2009-02-26 16:00:00
mitre
PUBLISHED
admin.php in Maran PHP Shop allows remote attackers to bypass authentication and gain administrative access by setting the user cookie to "demo."