CVE-2008-7027

Libra File Manager Php Filemanager < 1.18 - Authentication Bypass

Title source: rule
STIX 2.1

Description

Libra File Manager 1.18 and earlier allows remote attackers to bypass authentication and gain privileges by setting the user and pass cookies to 1.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Stack · textwebappsphp
https://www.exploit-db.com/exploits/6579

References (2)

Core 2
Core References
Exploit, Third Party Advisory exploit x_refsource_exploit-db
https://www.exploit-db.com/exploits/6579
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/31422

Scores

EPSS 0.0106
EPSS Percentile 77.8%

Details

CWE
CWE-287
Status published
Products (6)
libra_file_manager/php_filemanager 1.0
libra_file_manager/php_filemanager 1.03
libra_file_manager/php_filemanager 1.05
libra_file_manager/php_filemanager 1.08
libra_file_manager/php_filemanager 1.17
libra_file_manager/php_filemanager < 1.18
Published Aug 21, 2009
Tracked Since Feb 18, 2026