VYPR
Critical severity9.8NVD Advisory· Published Oct 7, 2018· Updated Jun 16, 2026

CVE-2012-6710

CVE-2012-6710

Description

ext_find_user in eXtplorer through 2.1.2 allows remote attackers to bypass authentication via a password[]= (aka an empty array) in an action=login request to index.php.

Affected products

3
  • Range: <=2.1.2
  • cpe:2.3:a:extplorer:extplorer:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:extplorer:extplorer:*:*:*:*:*:*:*:*range: <=2.1.2
    • (no CPE)range: <=2.1.2

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.