PT-2020-7670 · Unknown · Free Reprintables Articlefr
Published
2020-02-13
·
Updated
2020-02-19
·
CVE-2014-4170
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Free Reprintables Article version 11.06.2014
Description
A Privilege Escalation issue exists due to insufficient access restrictions in the data.php script. This could allow a remote malicious user to obtain access, modify, or delete database information.
Recommendations
For version 11.06.2014, consider restricting access to the data.php script until a fix is available. As a temporary workaround, review and tighten access controls to sensitive database information to minimize the risk of exploitation.
Exploit
Fix
Improper Privilege Management
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Free Reprintables Articlefr