Vanilla Forums Other Vulnerability - CVE-2011-0910 - Vulnerability Database

Vanilla Forums Other Vulnerability - CVE-2011-0910

Medium
Reference: CVE-2011-0910
Title: Vanilla Forums Other Vulnerability
Overview:

The cookie implementation in Vanilla Forums before 2.0.17.6 makes it easier for remote attackers to spoof signed requests and consequently obtain access to arbitrary user accounts via HMAC timing attacks.