Security Advisory
CVE-2008-0351
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
admin/config.php in Evilsentinel 1.0.9 and earlier allows remote attackers to bypass the CAPTCHA test by omitting the es_security_captcha parameter and not invoking captcha.php.