Beveiligingsadvies

CVE-2002-0995

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2003-04-02 05:00:00
Laatst bijgewerkt 2024-08-08 03:12:16
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

login.php for PHPAuction allows remote attackers to gain privileges via a direct call to login.php with the action parameter set to "insert," which adds the provided username to the adminUsers table.