Security Advisory

CVE-2008-2297

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2008-05-18 14:00:00
Last updated 2024-08-07 08:58:01
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

The admin.php file in Rantx allows remote attackers to bypass authentication and gain privileges by setting the logininfo cookie to "<?php" or "?>", which is present in the password file and probably passes an insufficient comparison.