Beanwebb Guestbook 1.0 - Unauthorized Administrative Access



EKU-ID: 27922 CVE: OSVDB-53711 OSVDB-ID:
Author: euronymous Published: 2003-03-29 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


source: https://www.securityfocus.com/bid/7232/info

A vulnerability has been reported for Guestbook that may allow remote attackers to obtain unauthorized access to administrative functions.

The vulnerability is likely due to insufficient permissions on the 'admin.php' script file.

http://hostname/guestbook/admin.php