PoC Index

CVE-2008-2682

HIGH 7.5EPSS 2.5%

_RealmAdmin/login.asp in Realm CMS 2.3 and earlier allows remote attackers to bypass authentication and access admin pages via certain modified cookies, probably including (1) cUserRole, (2) cUserName, and (3) cUserID.

CVSS v2.0
7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS
2.53% chance of exploitation in the next 30 days, 84th percentile
Published
2008-06-12
Updated
2024-08-07

ExploitDB entries (1)

References

Related