CVE-2008-2682

Publication date

2008-06-12 10:00:00

Family

mitre

State

PUBLISHED

Description

_RealmAdmin/login.asp in Realm CMS 2.3 and earlier allows remote attackers to bypass authentication and access admin pages via certain modified cookies, probably including (1) cUserRole, (2) cUserName, and (3) cUserID.