CVE detail
CVE-2008-7156 — CVE-2008-7156
Published 2009-09-02 · Modified 2026-06-16 · Vendor ekinboard · Product ekinboard · Source nvd
UNKNOWN
severity
CVSS-derived band
0.0191
EPSS probability
exploitation probability, 30d
78.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
EkinBoard 1.1.0 and earlier, when register_globals is enabled, allows remote attackers to bypass authorization and gain administrator privileges by setting the _groups[] parameter to 2, as demonstrated via backup.php.
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References