Hosting Controller 6.1 Hotfix 2.1 allows remote authenticated users to perform unauthorized actions, such as modifying the credit limit, via a direct request to AccountActions.asp and modifying the CreditLimit parameter in an UpdateCreditLimit action.
References
Link | Resource |
---|---|
http://securitytracker.com/id?1014443 | Exploit |
Configurations
Information
Published : 2005-07-11 21:00
Updated : 2008-09-05 13:51
NVD link : CVE-2005-2219
Mitre link : CVE-2005-2219
JSON object : View
CWE
Products Affected
hosting_controller
- hosting_controller