Security Advisory
CVE-2001-0383
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
banners.php in PHP-Nuke 4.4 and earlier allows remote attackers to modify banner ad URLs by directly calling the Change operation, which does not require authentication.