CVE-2007-5578

Publication date

2007-10-19 02:00:00

Family

mitre

State

PUBLISHED

Description

Basic Analysis and Security Engine (BASE) before 1.3.8 sends a redirect to the web browser but does not exit, which allows remote attackers to bypass authentication via (1) base_main.php, (2) base_qry_alert.php, and possibly other vectors.