CVE-2008-4708: High severity phpbb portal vulnerability
Published Oct 23, 2008
·Updated
BbZL.PhP 0.92 allows remote attackers to bypass authentication and gain administrative access by setting the phorumadminsession cookie to 1.
Affected Software
1 affected component
Sylvain Pasquet Bbzl.php=0.92
Event History
Oct 23, 2008
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-4708?
CVE-2008-4708 is classified as a high severity vulnerability due to the potential for remote unauthorized administrative access.
2
How do I fix CVE-2008-4708?
To fix CVE-2008-4708, ensure that you update BbZL.PhP to the latest version or implement additional security controls to validate session cookies.
3
What software is affected by CVE-2008-4708?
CVE-2008-4708 affects BbZL.PhP version 0.92.
4
What is the impact of exploiting CVE-2008-4708?
Exploiting CVE-2008-4708 allows attackers to bypass authentication and gain administrative access to the application.
5
Can CVE-2008-4708 be exploited remotely?
Yes, CVE-2008-4708 can be exploited remotely by setting the phorum_admin_session cookie to 1.