Unrated severityNVD Advisory· Published Jun 12, 2008· Updated Apr 23, 2026
CVE-2008-2682
CVE-2008-2682
Description
_RealmAdmin/login.asp in Realm CMS 2.3 and earlier allows remote attackers to bypass authentication and access admin pages via certain modified cookies, probably including (1) cUserRole, (2) cUserName, and (3) cUserID.
Affected products
1- cpe:2.3:a:realm_project:realm_cms:2.3:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5News mentions
0No linked articles in our index yet.