The documentation for AJ-Fork 167 implies that users should set permissions for users.db.php to 777, which allows local users to execute arbitrary PHP code and gain privileges as the administrator.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2004-12-30 21:00
Updated : 2017-07-10 18:31
NVD link : CVE-2004-1573
Mitre link : CVE-2004-1573
JSON object : View
CWE
Products Affected
cutephp
- cutenews
aj-fork
- aj-fork