Exploit APBoard 2.0 2 - Unauthorized Thread Reading

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
22073
Проверка EDB
  1. Пройдено
Автор
DNA ESC
Тип уязвимости
WEBAPPS
Платформа
PHP
CVE
N/A
Дата публикации
2002-12-06
Код:
source: https://www.securityfocus.com/bid/6330/info

A vulnerability has been reported for APBoard that may allow unauthorized users to read postings in internal forums. The vulnerability is a result of the 'useraction.php' script failing to properly check user credentials.

www.board.de/useraction.php3?action=subscribe_thread&threadid=<private thread id>
 
Источник
www.exploit-db.com

Похожие темы