PT-2006-5262 · Linkscaffe · Linkscaffe
Hoangyenxinhdep
·
Publicado
2006-08-31
·
Atualizado
2018-10-17
·
CVE-2006-4462
CVSS v2.0
7.5
Alta
| Vetor | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
LinksCaffe versions 2.0 through 3.0
Description
The issue allows remote attackers to gain full administration rights by making a direct request to "Admin/admin1953.php". This is due to improper restriction of access to administrator functions.
Recommendations
For versions 2.0 through 3.0, restrict access to the "Admin/admin1953.php" endpoint to prevent unauthorized administration access. Consider implementing proper access controls to administrator functions to mitigate the risk of exploitation.
Exploit
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Linkscaffe