HIGH
admin/options.php in Grestul 1.2 does not properly restrict access, which allows remote attackers to bypass authentication and create administrative accounts via a manage_admin action in a direct request
Published Jun 12, 2009
7.5
HIGHCVSS 2.0
EPSS 2.93%
Description
Affected products
Remediation
References (3)
Change history (0)
No recorded changes yet.