CVE-2008-6664
Published Apr 8, 2009action.php in SH-News 3.0 allows remote attackers to bypass authentication and gain administrator privileges by setting the shuser and shpass cookies to non-zero values.
Vendor/product archive
1 CVEs tagged to yarck / sh-news — 0 Critical, 1 High, 0 Medium, 0 Low, 0 Unrated.
action.php in SH-News 3.0 allows remote attackers to bypass authentication and gain administrator privileges by setting the shuser and shpass cookies to non-zero values.