CVE-2008-5738

Severity CVSS v4.0:
Pending analysis
Type:
CWE-264 Permissions, Privileges, and Access Control
Publication date:
26/12/2008
Last modified:
09/04/2025

Description

Nodstrum MySQL Calendar 1.1 and 1.2 allows remote attackers to bypass authentication and gain administrative access by setting the nodstrumCalendarV2 cookie to 1. NOTE: some of these details are obtained from third party information.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:nodstrum:mysql_calendar:1.1:*:*:*:*:*:*:*
cpe:2.3:a:nodstrum:mysql_calendar:1.2:*:*:*:*:*:*:*