Skip to main content

Vendor/product archive

yarck / sh-news CVEs

Beta · best-effort

1 CVEs tagged to yarck / sh-news0 Critical, 1 High, 0 Medium, 0 Low, 0 Unrated.

CVE-2008-6664

Published Apr 8, 2009

action.php in SH-News 3.0 allows remote attackers to bypass authentication and gain administrator privileges by setting the shuser and shpass cookies to non-zero values.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-1 of 1 CVEsPage 1 of 1