Security Advisory

CVE-2001-0088

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2001-02-02 05:00:00
Last updated 2024-08-08 04:06:55
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

common.inc.php in phpWebLog 0.4.2 does not properly initialize the $CONF array, which inadvertently sets the password to a single character, allowing remote attackers to easily guess the SiteKey and gain administrative privileges to phpWebLog.