CVE-2010-4728 Information
Feb 14, 2021
cve
Description
Zikula before 1.3.1 uses the rand and srand PHP functions for random number generation which makes it easier for remote attackers to defeat protection mechanisms based on randomization by predicting a return value as demonstrated by the authid protection mechanism.
Reference
http://code.zikula.org/core/ticket/2009
Share on: