CVE-2002-0491

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
12/08/2002
Last modified:
03/04/2025

Description

admin.php in AlGuest 1.0 guestbook checks for the existence of the admin cookie to authenticate the AlGuest administrator, which allows remote attackers to bypass the authentication and gain privileges by setting the admin cookie to an arbitrary value.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:alguest:alguest:1.0:*:*:*:*:*:*:*