Beveiligingsadvies

CVE-2007-5374

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2007-10-11 10:00:00
Laatst bijgewerkt 2024-08-07 15:31:57
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

cp_memberedit.php in LightBlog 8.4.1.1 does not check for administrative credentials when processing an admin action, which allows remote authenticated users to increase the privileges of any account.