7.5
CVE-2008-5783
- EPSS 3.37%
- Veröffentlicht 31.12.2008 11:30:00
- Zuletzt bearbeitet 16.06.2026 23:00:59
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
admin/index.php in V3 Chat Live Support 3.0.4 allows remote attackers to bypass authentication and gain administrative access by setting the admin cookie to 1.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
V3chat ≫ V3 Chat Live Support Version3.0.4
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 3.37% | 0.872 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
CWE-287 Improper Authentication
When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.
http://secunia.com/advisories/32603
http://securityreason.com/securityalert/4843
http://www.securityfocus.com/bid/32216
http://www.vupen.com/english/advisories/2008/3066
https://exchange.xforce.ibmcloud.com/vulnerabilities/46481
https://www.exploit-db.com/exploits/7069