First published: Thu May 04 2006(Updated: )
FileProtection Express 1.0.1 and earlier allows remote attackers to bypass authentication via a cookie with an Admin value of 1.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Formidable Pro2pdf | =1.0 | |
Formidable Pro2pdf | =1.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-2168 is considered a high severity vulnerability due to its ability to allow remote authentication bypass.
To fix CVE-2006-2168, update FileProtection Express to version 1.0.2 or later where the vulnerability is addressed.
CVE-2006-2168 affects users of FileProtection Express version 1.0 and 1.0.1.
CVE-2006-2168 is an authentication bypass vulnerability caused by improper cookie validation.
Yes, CVE-2006-2168 can be exploited remotely by an attacker using a specially crafted cookie.