7.5
CVSSv2

CVE-2001-0911

Published: 21/11/2001 Updated: 19/12/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

PHP-Nuke 5.1 stores user and administrator passwords in a base-64 encoded cookie, which could allow remote malicious users to gain privileges by stealing or sniffing the cookie and decoding it.

Vulnerable Product Search on Vulmon Subscribe to Product

francisco burzi php-nuke 5.1

francisco burzi php-nuke 5.2

francisco burzi php-nuke 5.3.1

postnuke software foundation postnuke 0.64