7.5
CVSSv2

CVE-2008-4600

Published: 18/10/2008 Updated: 29/09/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

configure.php in PokerMax Poker League Tournament Script 0.13 allows remote malicious users to bypass authentication and gain administrative access by setting the ValidUserAdmin cookie.

Vulnerable Product Search on Vulmon Subscribe to Product

steve dawson pokermax poker league tournament script 0.13

Exploits

************************************************************************************** Author : DaRkLiFe Greetz : str0ke & SWAT & funkys0ul ************************************************************************************** Script : PokerMax Poker League Insecure Cookie Handling Vulnerability Download: wwwstevedawsonc ...