7.5

CVE-2008-5783

Exploit
admin/index.php in V3 Chat Live Support 3.0.4 allows remote attackers to bypass authentication and gain administrative access by setting the admin cookie to 1.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
V3chatV3 Chat Live Support Version3.0.4
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 3.37% 0.872
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P
CWE-287 Improper Authentication

When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.

http://secunia.com/advisories/32603
Vendor Advisory
http://securityreason.com/securityalert/4843
http://www.securityfocus.com/bid/32216
Exploit
http://www.vupen.com/english/advisories/2008/3066
https://exchange.xforce.ibmcloud.com/vulnerabilities/46481
https://www.exploit-db.com/exploits/7069