Lucene search

K
cvelistMitreCVELIST:CVE-2006-4782
HistorySep 14, 2006 - 10:00 a.m.

CVE-2006-4782

2006-09-1410:00:00
mitre
www.cve.org

6.3 Medium

AI Score

Confidence

Low

0.014 Low

EPSS

Percentile

86.6%

src/index.php in WebSPELL 4.01.01 and earlier, when register_globals is enabled, allows remote attackers to bypass authentication and gain sensitive information stored in the database via a modified userID parameter in a write action to admin/database.php.

6.3 Medium

AI Score

Confidence

Low

0.014 Low

EPSS

Percentile

86.6%

Related for CVELIST:CVE-2006-4782