5
CVSSv2

CVE-2010-4728

Published: 08/02/2011 Updated: 14/02/2011
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

Zikula prior to 1.3.1 uses the rand and srand PHP functions for random number generation, which makes it easier for remote malicious users to defeat protection mechanisms based on randomization by predicting a return value, as demonstrated by the authid protection mechanism.

Vulnerable Product Search on Vulmon Subscribe to Product

zikula zikula application framework 1.2.2

zikula zikula application framework 1.2.1

zikula zikula application framework 1.2.4

zikula zikula application framework 1.1.2

zikula zikula application framework 1.2.3

zikula zikula application framework