CVE

Id
2909  
CVE No.
CVE-2001-0088  
Status
Candidate  
Description
common.inc.php in phpWebLog 0.4.2 does not properly initialize the $CONF array, which inadvertently sets the password to a single character, allowing remote attackers to easily guess the SiteKey and gain administrative privileges to phpWebLog.  
Phase
Proposed (20010202)  
Votes
ACCEPT(2) Baker, Frech | NOOP(3) Cole, Wall, Ziese  
Comments