CVE-2003-0588

admin.php in Digi-news 1.1 allows remote attackers to bypass authentication via a cookie with the username set to the name of the administrator, which satisfies an improper condition in admin.php that does not require a correct password.

Scoring

CVSS base score
0.1
EPSS probability
2.56%
Published
2016-10-17
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs