CVE-2008-6535

Publication date

2009-03-26 20:28:00

Family

mitre

State

PUBLISHED

Description

admin/settings.php in PayPal eStores allows remote attackers to bypass intended access restrictions and change the administrative password via a direct request with a modified NewAdmin parameter.