Security Advisory
CVE-2008-2297
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
The admin.php file in Rantx allows remote attackers to bypass authentication and gain privileges by setting the logininfo cookie to "<?php" or "?>", which is present in the password file and probably passes an insufficient comparison.