Security Advisory
CVE-2008-2682
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
_RealmAdmin/login.asp in Realm CMS 2.3 and earlier allows remote attackers to bypass authentication and access admin pages via certain modified cookies, probably including (1) cUserRole, (2) cUserName, and (3) cUserID.