PT-2007-5795 · Xgb · Xgb
Darkfuneral
·
Published
2007-08-31
·
Updated
2017-09-29
·
CVE-2007-4637
CVSS v2.0
6.4
Medium
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
xGB version 2.0
Description
The issue concerns a lack of authentication requirement for an admin edit action in the xGB.php file. This allows remote attackers to make unspecified changes.
Recommendations
For xGB version 2.0, ensure proper authentication mechanisms are implemented for admin edit actions to prevent unauthorized changes.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Xgb