CVEs affecting projects tracked on Release Alert, from NVD & OSV.
CVE-2011-0910 — MEDIUM severity vulnerability | Release Alert
CVE-2011-0910
6.4
MEDIUMCVSS v2
Published
February 8, 2011
Affected
2 projects
Assigned by
MITRE
Severity scale
010
Description
The cookie implementation in Vanilla Forums before 2.0.17.6 makes it easier for remote attackers to spoof signed requests, and consequently obtain access to arbitrary user accounts, via HMAC timing attacks.