Vulnerability Description
Whole Hog Ware Support 1.x allows remote attackers to bypass authentication and obtain administrative access via an integer value in the adminid cookie.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Wholehogsoftware | Ware Support | 1.0 |
Related Weaknesses (CWE)
References
- http://osvdb.org/51734
- http://secunia.com/advisories/33777Vendor Advisory
- http://www.securityfocus.com/bid/33577Exploit
- https://www.exploit-db.com/exploits/7951
- http://osvdb.org/51734
- http://secunia.com/advisories/33777Vendor Advisory
- http://www.securityfocus.com/bid/33577Exploit
- https://www.exploit-db.com/exploits/7951
FAQ
What is CVE-2009-0460?
CVE-2009-0460 is a vulnerability with a CVSS score of 7.5 (HIGH). Whole Hog Ware Support 1.x allows remote attackers to bypass authentication and obtain administrative access via an integer value in the adminid cookie.
How severe is CVE-2009-0460?
CVE-2009-0460 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2009-0460?
Check the references section above for vendor advisories and patch information. Affected products include: Wholehogsoftware Ware Support.