Lucene search

K
cvelistMitreCVELIST:CVE-2008-6523
HistoryMar 25, 2009 - 6:00 p.m.

CVE-2008-6523

2009-03-2518:00:00
mitre
www.cve.org
1

AI Score

7.2

Confidence

Low

EPSS

0.006

Percentile

79.4%

auth.php in openInvoice 0.90 beta and earlier allows remote attackers to bypass authentication and gain privileges by setting the oiauth cookie. NOTE: this can be leveraged with a separate vulnerability in resetpass.php to modify passwords for arbitrary users.

AI Score

7.2

Confidence

Low

EPSS

0.006

Percentile

79.4%

Related for CVELIST:CVE-2008-6523