First published: Sat Jun 02 2001(Updated: )
cookiedecode function in PHP-Nuke 4.4 allows users to bypass authentication and gain access to other user accounts by extracting the authentication information from a cookie.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
PHP-Nuke | =4.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2001-0001 has been classified as a critical vulnerability due to its potential to allow unauthorized access to user accounts.
To fix CVE-2001-0001, upgrade PHP-Nuke to a version later than 4.4 that addresses this vulnerability.
CVE-2001-0001 affects PHP-Nuke version 4.4, allowing cookie-based authentication bypass.
Users of PHP-Nuke 4.4 are at risk of having their accounts accessed without authorization due to CVE-2001-0001.
CVE-2001-0001 is an authentication bypass vulnerability related to insecure handling of cookies.