10
CVSSv2

CVE-2002-0491

Published: 12/08/2002 Updated: 05/09/2008
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

admin.php in AlGuest 1.0 guestbook checks for the existence of the admin cookie to authenticate the AlGuest administrator, which allows remote malicious users to bypass the authentication and gain privileges by setting the admin cookie to an arbitrary value.

Vulnerable Product Search on Vulmon Subscribe to Product

alguest alguest 1.0