Critical severity9.8NVD Advisory· Published Feb 11, 2020· Updated Jun 17, 2026
CVE-2014-9753
CVE-2014-9753
Description
confirm.php in ATutor 2.2 and earlier allows remote attackers to bypass authentication and gain access as an existing user via the auto_login parameter.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- ATutor/ATutordescription
Patches
Vulnerability mechanics
References
5- github.com/atutor/ATutor/commit/950a0299954e69b8742cc1f1a632f564435d4d7dnvdPatchThird Party Advisory
- karmainsecurity.com/KIS-2015-06nvdExploitThird Party Advisory
- seclists.org/fulldisclosure/2015/Nov/11nvdExploitMailing ListThird Party Advisory
- update.atutor.ca/patch/2_2/2_2-6/patch.xmlnvdBroken Link
- www.securityfocus.com/archive/1/archive/1/536835/100/0/threadednvdBroken Link
News mentions
0No linked articles in our index yet.