Vulnerabilities > Kalptarudemos

DATE CVE VULNERABILITY TITLE RISK
2009-05-07 CVE-2009-1587 Improper Authentication vulnerability in Kalptarudemos PHP Site Lock 2.0
index.php in PHP Site Lock 2.0 allows remote attackers to bypass authentication and obtain administrative access by setting the login_id, group_id, login_name, user_id, and user_type cookies to certain values.
network
low complexity
kalptarudemos CWE-287
7.5
2009-05-07 CVE-2009-1582 Permissions, Privileges, and Access Controls vulnerability in Kalptarudemos Million Dollar Text Links 1.0
Million Dollar Text Links 1.0 does not properly restrict administrator access to admin.home.php, which allows remote attackers to bypass intended restrictions and gain privileges via a direct request to admin.home.php after visiting admin.php.
network
low complexity
kalptarudemos CWE-264
7.5