Pheap 2.0 allows remote attackers to bypass authentication by setting a pheap_login cookie value to the administrator's username, which can be used to (1) obtain sensitive information, including the administrator password, via settings.php or (2) upload and execute arbitrary PHP code via an update_doc action in edit.php.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2007-06-01T10:00:00
Updated: 2024-08-07T13:57:54.922Z
Reserved: 2007-05-31T00:00:00
Link: CVE-2007-2985
Vulnrichment
No data.
NVD
Status : Modified
Published: 2007-06-01T10:30:00.000
Modified: 2024-11-21T00:32:07.703
Link: CVE-2007-2985
Redhat
No data.