First published: Mon Nov 06 2006(Updated: )
PunBB uses a predictable cookie_seed value that can be derived from the time of registration of the superadmin account (installation time), which might allow local users to perform unauthorized actions.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Punbb Punbb | =1.2.14 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.