MEDIUM
EkinBoard 1.1.0 and earlier, when register_globals is enabled, allows remote attackers to bypass authorization and gain administrator privileges by setting the _groups[] parameter to 2, as demonstrated via backup.php
Published Sep 2, 2009
6.8
MEDIUMCVSS 2.0
EPSS 1.91%
Description
Affected products
Remediation
Metrics
References (3)
Change history (0)
No recorded changes yet.