PT-2020-7670 · Unknown · Free Reprintables Articlefr

Published

2020-02-13

·

Updated

2020-02-19

·

CVE-2014-4170

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Free Reprintables Article version 11.06.2014
Description A Privilege Escalation issue exists due to insufficient access restrictions in the data.php script. This could allow a remote malicious user to obtain access, modify, or delete database information.
Recommendations For version 11.06.2014, consider restricting access to the data.php script until a fix is available. As a temporary workaround, review and tighten access controls to sensitive database information to minimize the risk of exploitation.

Exploit

Fix

Improper Privilege Management

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2014-4170

Affected Products

Free Reprintables Articlefr