PunBB uses a predictable cookie_seed value that can be derived from the time of registration of the superadmin account (installation time), which might allow local users to perform unauthorized actions.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2006-5721 | PunBB uses a predictable cookie_seed value that can be derived from the time of registration of the superadmin account (installation time), which might allow local users to perform unauthorized actions. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-07T20:04:54.466Z
Reserved: 2006-11-06T00:00:00.000Z
Link: CVE-2006-5737
No data.
Status : Deferred
Published: 2006-11-06T18:07:00.000
Modified: 2025-04-09T00:30:58.490
Link: CVE-2006-5737
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD