CVE-2009-4927

Webmobo Wbnews - Authentication Bypass

Title source: rule

Description

WB News 2.1.2 allows remote attackers to bypass authentication and gain administrative access via a modified WBNEWS cookie, as demonstrated by setting this cookie to 1.

Exploits (1)

exploitdb WORKING POC VERIFIED
by ThE g0bL!N · textwebappsphp
https://www.exploit-db.com/exploits/8492

Scores

EPSS 0.0169
EPSS Percentile 82.0%

Classification

CWE
CWE-287
Status draft

Affected Products (1)

webmobo/wbnews

Timeline

Published Jul 12, 2010
Tracked Since Feb 18, 2026