CVE-2006-0686

Publication date

2006-02-15 05:00:00

Family

mitre

State

PUBLISHED

Description

add_user.php in Virtual Hosting Control System (VHCS) 2.4.7.1 and earlier does not check user privileges when adding a new administrative user, which allows remote attackers to gain unauthorized access.