CVE-2005-0614
sessions.php in phpBB 2.0.12 and earlier allows remote attackers to gain administrator privileges via the autologinid value in a cookie.
- Affected products
- Phpbb
- Phpbb Group Phpbb
- = 1.0.0, 1.2.0, 1.2.1, 1.4.0, 1.4.1, 1.4.2, 1.4.4, 2.0.0, 2.0.1, 2.0.2, 2.0.3, 2.0.4, 2.0.5, 2.0.6, 2.0.6c, 2.0.6d, 2.0.7, 2.0.7a, 2.0.8, 2.0.8a, 2.0.9, 2.0.10, 2.0.11, 2.0.12, 2.0_beta1, 2.0_rc1, 2.0_rc2, 2.0_rc3, 2.0_rc4
- Fix
- Available
- CVSS 2.0
- 7.5 HIGH
- EPSS
- 7.5% (94th percentile)
- NVD status
- Modified
- Published
- 2005-03-03
CVE-2005-0614 at NVD
3 known exploits for CVE-2005-0614
Proof-of-concept code and exploit modules indexed by Sploitus