CVE-2004-1573

Publication date

2005-02-20 05:00:00

Family

mitre

State

PUBLISHED

Description

The documentation for AJ-Fork 167 implies that users should set permissions for users.db.php to 777, which allows local users to execute arbitrary PHP code and gain privileges as the administrator.