CVE
- Id
- 2909
- CVE No.
- CVE-2001-0088
- Status
- Candidate
- Description
- common.inc.php in phpWebLog 0.4.2 does not properly initialize the $CONF array, which inadvertently sets the password to a single character, allowing remote attackers to easily guess the SiteKey and gain administrative privileges to phpWebLog.
- Phase
- Proposed (20010202)
- Votes
- ACCEPT(2) Baker, Frech | NOOP(3) Cole, Wall, Ziese
- Comments