CVE-2008-2297

Severity CVSS v4.0:
Pending analysis
Type:
CWE-264 Permissions, Privileges, and Access Control
Publication date:
18/05/2008
Last modified:
29/09/2017

Description

The admin.php file in Rantx allows remote attackers to bypass authentication and gain privileges by setting the logininfo cookie to "", which is present in the password file and probably passes an insufficient comparison.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:roticv:rantx:1.0:*:*:*:*:*:*:*