CVE-2007-1160

Published Mar 2, 2007

Last updated 6 years ago

Overview

Description
webSPELL 4.0, and possibly later versions, allows remote attackers to bypass authentication via a ws_auth cookie, a different vulnerability than CVE-2006-4782.
Source
cve@mitre.org
NVD status
Modified

Social media

Hype score
Not currently trending

Risk scores

CVSS 2.0

Type
Primary
Base score
10
Impact score
10
Exploitability score
10
Vector string
AV:N/AC:L/Au:N/C:C/I:C/A:C

Weaknesses

nvd@nist.gov
CWE-287

Evaluator

Comment
-
Impact
This vulnerability may affect more recent versions of the product as well. (WebSPELL, WebSPELL, 4.0 and later)
Solution
This vulnerability may affect more recent versions of the product as well. (WebSPELL, WebSPELL, 4.0 and later)

Configurations