Описание
The Simple Forum 3.1d module for LoveCMS 1.6.2 Final does not properly restrict access to administrator functions, which allows remote attackers to change the administrator password via a direct request to modules/simpleforum/admin/index.php.
The Simple Forum 3.1d module for LoveCMS 1.6.2 Final does not properly restrict access to administrator functions, which allows remote attackers to change the administrator password via a direct request to modules/simpleforum/admin/index.php.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2008-5308
- https://exchange.xforce.ibmcloud.com/vulnerabilities/46793
- https://www.exploit-db.com/exploits/7191
- http://osvdb.org/50067
- http://secunia.com/advisories/32758
- http://securityreason.com/securityalert/4676
- http://www.securityfocus.com/bid/32435
- http://www.vupen.com/english/advisories/2008/3243
EPSS
Процентиль: 93%
0.09735
Низкий
CVE ID
Связанные уязвимости
nvd
около 17 лет назад
The Simple Forum 3.1d module for LoveCMS 1.6.2 Final does not properly restrict access to administrator functions, which allows remote attackers to change the administrator password via a direct request to modules/simpleforum/admin/index.php.
EPSS
Процентиль: 93%
0.09735
Низкий