CVE-2011-0437

Publication date

2011-03-07 20:00:00

Family

mitre

State

PUBLISHED

Description

shared/inc/sql/ssh.php in the SSH accounts management implementation in Domain Technologie Control (DTC) before 0.32.9 allows remote authenticated users to delete arbitrary accounts via the edssh_account parameter in a deletesshaccount Delete action.