Unrated severityNVD Advisory· Published May 30, 2006· Updated Apr 16, 2026
CVE-2006-2636
CVE-2006-2636
Description
newsadmin.asp in Katy Whitton NewsCMSLite allows remote attackers to bypass authentication and gain administrative access by setting the loggedIn cookie to "xY1zZoPQ".
Affected products
1- cpe:2.3:a:katy_whitton:newscmslite:*:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
8- www.bugreport.ir/index_62.htmnvdExploit
- secunia.com/advisories/20294nvdVendor Advisory
- www.kapda.ir/advisory-332.htmlnvdVendor Advisory
- www.vupen.com/english/advisories/2006/1993nvdVendor Advisory
- securityreason.com/securityalert/974nvd
- www.securityfocus.com/archive/1/435019/100/0/threadednvd
- www.securityfocus.com/archive/1/500407/100/0/threadednvd
- exchange.xforce.ibmcloud.com/vulnerabilities/26698nvd
News mentions
0No linked articles in our index yet.