PHP Easy Download Edit.PHP Authentication Bypass Vulnerability
BID:15470
Info
PHP Easy Download Edit.PHP Authentication Bypass Vulnerability
| Bugtraq ID: | 15470 |
| Class: | Access Validation Error |
| CVE: |
CVE-2005-3698 |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 16 2005 12:00AM |
| Updated: | Jul 12 2009 05:56PM |
| Credit: | syst3m_f4ult is credited with the discovery of this vulnerability. |
| Vulnerable: |
PHP Easy Download PHP Easy Download |
| Not Vulnerable: | |
Discussion
PHP Easy Download Edit.PHP Authentication Bypass Vulnerability
PHP Easy Download is prone to an authentication bypass vulnerability.
An attacker can exploit this vulnerability to gain administrative access to the affected application.
PHP Easy Download is prone to an authentication bypass vulnerability.
An attacker can exploit this vulnerability to gain administrative access to the affected application.
Exploit / POC
PHP Easy Download Edit.PHP Authentication Bypass Vulnerability
No exploit is required.
No exploit is required.
Solution / Fix
PHP Easy Download Edit.PHP Authentication Bypass Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
PHP Easy Download Edit.PHP Authentication Bypass Vulnerability
References:
References:
- IronClad Web Site (IronClad)