PHPMyFamily Authentication Bypass Vulnerability
BID:10616
Info
PHPMyFamily Authentication Bypass Vulnerability
| Bugtraq ID: | 10616 |
| Class: | Configuration Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 28 2004 12:00AM |
| Updated: | Jun 28 2004 12:00AM |
| Credit: | Discovery is credited to Valerie Holfield. |
| Vulnerable: |
phpmyfamily phpmyfamily 1.3 phpmyfamily phpmyfamily 1.2.5 phpmyfamily phpmyfamily 1.2.4 |
| Not Vulnerable: |
phpmyfamily phpmyfamily 1.3.1 |
Discussion
PHPMyFamily Authentication Bypass Vulnerability
phpmyfamily is prone to an authentication bypass vulnerability.
This issue reportedly occurs when the registers_globals PHP configuration directive is enabled. Exploitation could permit an unauthorized remote user to edit site content.
phpmyfamily is prone to an authentication bypass vulnerability.
This issue reportedly occurs when the registers_globals PHP configuration directive is enabled. Exploitation could permit an unauthorized remote user to edit site content.
Exploit / POC
PHPMyFamily Authentication Bypass Vulnerability
There is no exploit required.
There is no exploit required.
Solution / Fix
PHPMyFamily Authentication Bypass Vulnerability
Solution:
This issue is addressed in version 1.3.1.
phpmyfamily phpmyfamily 1.2.4
phpmyfamily phpmyfamily 1.2.5
phpmyfamily phpmyfamily 1.3
Solution:
This issue is addressed in version 1.3.1.
phpmyfamily phpmyfamily 1.2.4
-
phpmyfamily phpmyfamily 1.3.1
http://www.phpmyfamily.net/downloads.php
phpmyfamily phpmyfamily 1.2.5
-
phpmyfamily phpmyfamily 1.3.1
http://www.phpmyfamily.net/downloads.php
phpmyfamily phpmyfamily 1.3
-
phpmyfamily phpmyfamily 1.3.1
http://www.phpmyfamily.net/downloads.php