Security Advisory

CVE-2008-3292

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2008-07-24 18:00:00
Last updated 2024-08-07 09:37:25
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

constants.inc in EZWebAlbum 1.0 allows remote attackers to bypass authentication and gain administrator privileges by setting the photoalbumadmin cookie, as demonstrated via addpage.php.