Vulnerabilities > CVE-2006-1276 - Authentication Bypass vulnerability in PHP SimpleNEWS

047910
CVSS 10.0 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
low complexity
himpfen-consulting
critical

Summary

admin.php in Himpfen Consulting Company PHP SimpleNEWS 1.0.0 allows remote attackers to bypass authentication by setting the admin parameter in a cookie.

Vulnerable Configurations

Part Description Count
Application
Himpfen_Consulting
1