Security Advisory

CVE-2006-0201

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2006-01-13 23:00:00
Last updated 2024-08-07 16:25:33
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Dave Nielsen and Patrick Breitenbach PayPal Web Services (aka PHP Toolkit) 0.50, and possibly earlier versions, allows remote attackers to enter false payment entries into the log file via HTTP POST requests to ipn_success.php.