CVE-2008-5840 Information

Description

PHP iCalendar 2.24 and earlier allows remote attackers to bypass authentication by setting the phpicalendar and phpicalendar_login cookies to 1.

Reference

http://securityreason.com/securityalert/4865 http://www.securityfocus.com/bid/31320 https://exchange.xforce.ibmcloud.com/vulnerabilities/45338 https://www.exploit-db.com/exploits/6526

Share on: