Vulnerabilities > CVE-2009-0399 - Configuration vulnerability in Chipmunk Scripts Chipmunk Blogger

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
chipmunk-scripts
CWE-16
exploit available

Summary

Chipmunk Blogger Script allows remote attackers to gain administrator privileges via a direct request to admin/reguser.php. NOTE: this is only a vulnerability when the administrator does not properly follow installation directions.

Vulnerable Configurations

Part Description Count
Application
Chipmunk_Scripts
1

Common Weakness Enumeration (CWE)

Exploit-Db

descriptionChipmunk Blog (Auth Bypass) Add Admin Exploit. CVE-2009-0399,CVE-2009-0403. Webapps exploit for php platform
fileexploits/php/webapps/7894.txt
idEDB-ID:7894
last seen2016-02-01
modified2009-01-28
platformphp
port
published2009-01-28
reporterx0r
sourcehttps://www.exploit-db.com/download/7894/
titleChipmunk Blog Auth Bypass Add Admin Exploit
typewebapps