CVE-2009-1582
Last modified
CVE-2009-1582 is a vulnerability of currently unknown severity. Million Dollar Text Links 1.0 does not properly restrict administrator access to admin.home.php, which allows remote attackers to bypass intended restrictions and gain privileges via a direct request to admin.home.php after visiting admin.php.. EPSS estimates a 2.80% chance of exploitation in the next 30 days.
Description
Million Dollar Text Links 1.0 does not properly restrict administrator access to admin.home.php, which allows remote attackers to bypass intended restrictions and gain privileges via a direct request to admin.home.php after visiting admin.php.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Kalptarudemos | Million Dollar Text Links | 1.0 |
References
- http://secunia.com/advisories/34994Vendor Advisory
- http://secunia.com/advisories/34994Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2009-1582?
How severe is CVE-2009-1582?
How do I fix CVE-2009-1582?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2009
- CVE-2009-1576Unspecified vulnerability in Drupal 5.x before 5.17 and 6.x …
- CVE-2009-1577Multiple stack-based buffer overflows in the putstring funct…
- CVE-2009-1578Multiple cross-site scripting (XSS) vulnerabilities in Squir…
- CVE-2009-1579The map_yp_alias function in functions/imap_general.php in S…
- CVE-2009-1580Session fixation vulnerability in SquirrelMail before 1.4.18…
- CVE-2009-1581functions/mime.php in SquirrelMail before 1.4.18 does not pr…
- CVE-2009-1583Multiple cross-site scripting (XSS) vulnerabilities in TemaT…
- CVE-2009-1584Multiple SQL injection vulnerabilities in TemaTres 1.0.3 and…
- CVE-2009-1585Multiple SQL injection vulnerabilities in TemaTres 1.031, wh…
- CVE-2009-1586Stack-based buffer overflow in the NZB importer feature in G…
- CVE-2009-1587index.php in PHP Site Lock 2.0 allows remote attackers to by…
- CVE-2009-1588Cross-site scripting (XSS) vulnerability in CGI RESCUE MiniB…
Are you affected by CVE-2009-1582?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
