backup.php in HandsomeWeb SOS Webpages before 1.1.12 does not require knowledge of the cleartext password, which allows remote attackers to bypass authentication by leveraging knowledge of the administrator password hash.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2014-3457 | backup.php in HandsomeWeb SOS Webpages before 1.1.12 does not require knowledge of the cleartext password, which allows remote attackers to bypass authentication by leveraging knowledge of the administrator password hash. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-06T10:43:06.383Z
Reserved: 2014-05-09T00:00:00
Link: CVE-2014-3445
No data.
Status : Modified
Published: 2020-01-28T15:15:14.920
Modified: 2024-11-21T02:08:06.810
Link: CVE-2014-3445
No data.
OpenCVE Enrichment
No data.
EUVD