Security Advisory
CVE-2008-4167
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
useradmin.php in Easy Photo Gallery (aka Ezphotogallery) 2.1 does not require administrative authentication, which allows remote attackers to (1) add or (2) remove an Administrator account.