CVE-2001-0001: High severity Francisco Burzi PHP-Nuke vulnerability
Published Jun 2, 2001
·Updated
cookiedecode function in PHP-Nuke 4.4 allows users to bypass authentication and gain access to other user accounts by extracting the authentication information from a cookie.
Affected Software
1 affected component
Francisco Burzi PHP-Nuke=4.4
Remediation
Event History
Jun 2, 2001
CVE Published
04:00 AM
Mar 9, 2002
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-0001?
CVE-2001-0001 has been classified as a critical vulnerability due to its potential to allow unauthorized access to user accounts.
2
How do I fix CVE-2001-0001?
To fix CVE-2001-0001, upgrade PHP-Nuke to a version later than 4.4 that addresses this vulnerability.
3
What systems are affected by CVE-2001-0001?
CVE-2001-0001 affects PHP-Nuke version 4.4, allowing cookie-based authentication bypass.
4
Who is impacted by CVE-2001-0001?
Users of PHP-Nuke 4.4 are at risk of having their accounts accessed without authorization due to CVE-2001-0001.
5
What type of vulnerability is CVE-2001-0001?
CVE-2001-0001 is an authentication bypass vulnerability related to insecure handling of cookies.