CVE-2018-20371
Last modified
CVE-2018-20371 is a vulnerability of currently unknown severity. PhotoRange Photo Vault 1.2 appends the password to the URI for authorization, which makes it easier for remote attackers to bypass intended GET restrictions via a brute-force approach, as demonstrated by "GET /login.html__passwd1" and "GET /login.html__passwd2" and so on.. EPSS estimates a 1.58% chance of exploitation in the next 30 days.
Description
PhotoRange Photo Vault 1.2 appends the password to the URI for authorization, which makes it easier for remote attackers to bypass intended GET restrictions via a brute-force approach, as demonstrated by "GET /login.html__passwd1" and "GET /login.html__passwd2" and so on.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Photorange Photo Vault Project | Photorange Photo Vault | 1.2 |
References
- https://www.vulnerability-lab.com/get_content.php?id=2110Exploit, Third Party Advisory
- https://www.vulnerability-lab.com/get_content.php?id=2110Exploit, Third Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2018-20371?
How severe is CVE-2018-20371?
How do I fix CVE-2018-20371?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2018
- CVE-2018-20365LibRaw::raw2image() in libraw_cxx.cpp has a heap-based buffe…
- CVE-2018-20367The "mall some commodity details: commodity consultation" co…
- CVE-2018-20368The Master Slider plugin 3.2.7 and 3.5.1 for WordPress has X…
- CVE-2018-20369Barracuda Message Archiver 2018 has XSS in the error_msg exc…
- CVE-2018-2037Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultI…
- CVE-2018-20370SZ NetChat before 7.9 has XSS in the MyName input field of t…
- CVE-2018-20372TP-Link TD-W8961ND devices allow XSS via the hostname of a D…
- CVE-2018-20373Tenda ADSL modem routers 1.0.1 allow XSS via the hostname of…
- CVE-2018-20374An issue was discovered in Tiny C Compiler (aka TinyCC or TC…
- CVE-2018-20375An issue was discovered in Tiny C Compiler (aka TinyCC or TC…
- CVE-2018-20376An issue was discovered in Tiny C Compiler (aka TinyCC or TC…
- CVE-2018-20377Orange Livebox 00.96.320S devices allow remote attackers to …
Are you affected by CVE-2018-20371?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
