Loading...
Loading...
phShoutBox Final 1.5 and earlier only checks passwords when specified in $_POST, which allows remote attackers to gain privileges by setting the (1) phadmin cookie to admin.php, or (2) in 1.4 and earlier, the ssbadmin cookie to shoutadmin.php.
April 27, 2008
April 23, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2008-1971
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.