VULNERABILITY INTELLIGENCE
CVE-2009-2003
CVSS score7.5 HIGH
EPSS probability2.51%
CISA KEVNot currently listed
Published2009-06-08
Last modified2026-06-16
CVSS vectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Description
Ascad Networks Password Protector SD 1.3.1 allows remote attackers to bypass authentication and gain administrative access by setting the (1) c7portal and (2) cookname cookies to "admin."
Weakness classification
- CWE-287: Improper Authentication