CVE-2006-1505 Information

Description

base_maintenance.php in Basic Analysis and Security Engine (BASE) before 1.2.4 (melissa) when running in standalone mode allows remote attackers to bypass authentication possibly by setting the standalone parameter to \yes.

Reference

http://cvs.sourceforge.net/viewcvs.py/secureideas/base-php4/docs/CHANGELOG?rev=1.233&view=markup http://secunia.com/advisories/19510 http://www.osvdb.org/24101 http://www.securityfocus.com/bid/17354 http://www.vupen.com/english/advisories/2006/1192

Share on: