Critical severity9.8NVD Advisory· Published Oct 7, 2018· Updated Jun 16, 2026
CVE-2012-6710
CVE-2012-6710
Description
ext_find_user in eXtplorer through 2.1.2 allows remote attackers to bypass authentication via a password[]= (aka an empty array) in an action=login request to index.php.
Affected products
3- Range: <=2.1.2
Patches
Vulnerability mechanics
References
3- itsecuritysolutions.org/2012-12-31-eXtplorer-v2.1-authentication-bypass-vulnerabilitynvdExploitThird Party Advisory
- www.cnnvd.org.cn/web/xxk/ldxqById.tagnvdThird Party Advisory
- www.securityfocus.com/bid/57058nvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.