PT-2007-2830 · Sql Ledger+1 · Sql-Ledger+1

Published

2007-03-13

·

Updated

2018-10-16

·

CVE-2007-1436

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions SQL-Ledger versions prior to 2.6.26 LedgerSMB versions prior to 1.1.9
Description The issue allows remote attackers to bypass authentication through unknown vectors, preventing a password check from occurring. This is due to an unspecified vulnerability in the admin.pl component.
Recommendations For SQL-Ledger versions prior to 2.6.26, update to version 2.6.26 or later. For LedgerSMB versions prior to 1.1.9, update to version 1.1.9 or later.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2007-1436

Affected Products

Ledgersmb
Sql-Ledger