5
CVE-2006-3837
- EPSS 1.14%
- Veröffentlicht 25.07.2006 13:22:00
- Zuletzt bearbeitet 16.06.2026 22:27:56
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
delcookie.php in Professional Home Page Tools Guestbook changes the expiration date of a cookie instead of deleting the cookie's value, which makes it easier for attackers to steal the cookie and obtain the administrator's password hash after logout.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.14% | 0.624 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:N/I:P/A:N
|
http://artemis.abenteuer-mittelerde.de/pub/adv02-phptgb.txt
http://secunia.com/advisories/21102
http://www.securityfocus.com/archive/1/440421/100/0/threaded
https://exchange.xforce.ibmcloud.com/vulnerabilities/27775
http://securityreason.com/securityalert/1275