CVE-2006-5932 Information
Feb 14, 2021
cve
Description
Kahua before 0.7 when running multiple applications under a single supervisor grants application access on the basis of username instead of username and database name which allows remote authenticated users to obtain unauthorized access if different databases assign the same username to different user accounts.
Reference
http://secunia.com/advisories/22785 http://www.kahua.org/cgi-bin/kahua.fcgi/kahua-web/show/KSA/KSA2006-001 http://www.securityfocus.com/bid/21074 http://www.timedia.co.jp/news/2467470581 http://www.vupen.com/english/advisories/2006/4486 https://exchange.xforce.ibmcloud.com/vulnerabilities/30206
Share on: