CVE
- Id
- 3243
- CVE No.
- CVE-2001-0425
- Status
- Candidate
- Description
- AdLibrary.pm in AdCycle 0.78b allows remote attackers to gain privileges to AdCycle via a malformed Agent: header in the HTTP request, which is inserted into a resulting SQL query that is used to verify login information.
- Phase
- Proposed (20010524)
- Votes
- MODIFY(1) Frech | NOOP(4) Cole, Oliver, Wall, Ziese
- Comments
- Frech> XF:adcycle-adlibrarypm-unauthorized-access(6618)