Description
delcookie.php in Professional Home Page Tools Guestbook changes the expiration date of a cookie instead of deleting the cookie's value, which makes it easier for attackers to steal the cookie and obtain the administrator's password hash after logout.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2006-3831 | delcookie.php in Professional Home Page Tools Guestbook changes the expiration date of a cookie instead of deleting the cookie's value, which makes it easier for attackers to steal the cookie and obtain the administrator's password hash after logout. |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-07T18:48:39.283Z
Reserved: 2006-07-24T00:00:00.000Z
Link: CVE-2006-3837
No data.
Status : Deferred
Published: 2006-07-25T13:22:00.000
Modified: 2025-04-03T01:03:51.193
Link: CVE-2006-3837
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD