CVE-2008-4622
Phpfastnews - Authentication Bypass
Title source: ruleDescription
The isLoggedIn function in fastnews-code.php in phpFastNews 1.0.0 allows remote attackers to bypass authentication and gain administrative access by setting the fn-loggedin cookie to 1.
Exploits (1)
References (6)
Scores
EPSS
0.0529
EPSS Percentile
89.9%
Classification
CWE
CWE-287
Status
draft
Affected Products (1)
phpfastnews/phpfastnews
Timeline
Published
Oct 21, 2008
Tracked Since
Feb 18, 2026