Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wcx7-w66c-fc49

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

adduser.php in PHP-AGTC Membership (AGTC-Membership) System 1.1a does not require authentication, which allows remote attackers to create accounts via a modified form, as demonstrated by an account with admin (userlevel 4) privileges.

adduser.php in PHP-AGTC Membership (AGTC-Membership) System 1.1a does not require authentication, which allows remote attackers to create accounts via a modified form, as demonstrated by an account with admin (userlevel 4) privileges.

EPSS

Процентиль: 85%
0.02516
Низкий

Дефекты

CWE-287

Связанные уязвимости

nvd
больше 18 лет назад

adduser.php in PHP-AGTC Membership (AGTC-Membership) System 1.1a does not require authentication, which allows remote attackers to create accounts via a modified form, as demonstrated by an account with admin (userlevel 4) privileges.

EPSS

Процентиль: 85%
0.02516
Низкий

Дефекты

CWE-287