Vulnerabilities > CVE-2006-4427 - Authentication Bypass vulnerability in eFiction
Attack vector
NETWORK Attack complexity
HIGH Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
PARTIAL Availability impact
PARTIAL Summary
index.php in eFiction before 2.0.7 allows remote attackers to bypass authentication and gain privileges by setting the (1) adminloggedin, (2) loggedin, and (3) level parameters to "1".
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 4 |
Exploit-Db
description | eFiction < 2.0.7 Remote Admin Authentication Bypass Vulnerability. CVE-2006-4427. Webapps exploit for php platform |
file | exploits/php/webapps/2255.txt |
id | EDB-ID:2255 |
last seen | 2016-01-31 |
modified | 2006-08-25 |
platform | php |
port | |
published | 2006-08-25 |
reporter | Vipsta |
source | https://www.exploit-db.com/download/2255/ |
title | eFiction < 2.0.7 - Remote Admin Authentication Bypass Vulnerability |
type | webapps |