VYPR

Evilsentinel

by Evilsentinel

CVEs (2)

  • CVE-2008-0351Jan 18, 2008
    risk 0.03cvss epss 0.02

    admin/config.php in Evilsentinel 1.0.9 and earlier allows remote attackers to bypass the CAPTCHA test by omitting the es_security_captcha parameter and not invoking captcha.php.

  • CVE-2008-0350Jan 18, 2008
    risk 0.03cvss epss 0.05

    admin/index.php in Evilsentinel 1.0.9 and earlier sends a redirect to the web browser but does not exit, which allows remote attackers to gain administrative privileges and make arbitrary configuration changes.