Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2007-6013 (WordPress)

BugsAlert Home > CVE-2007-6013 (WordPress)
 
 

Wordpress 1.5 to 2.3.1 uses cookie values based on the MD5 hash of a password MD5 hash, which allows attackers to bypass authentication by obtaining the MD5 hash from the user database, then generating the authentication cookie from that hash.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-6013

Learn more about CVE-2007-6013 (WordPress)
 
Tags: cve-2007-6013 wordpress

Related Items

      Ingate Firewall and SIParator Multiple Vulnerabilities

      FrSIRT - Mandriva Security Update Fixes IPsec-Tools Denial of Service Issues

      CVE-2008-5792 (indiscripts_enthusiast)

      Bugtraq: [ MDVSA-2008:080 ] - Updated Firefox packages fix multiple vulnerabilities

      JustSystems Ichitaro Document Processing Buffer Overflow

      DWD Realty Two SQL Injection Vulnerabilities

      CVE-2007-6455 (Mambo)

 

Pixel