change_password.php in Virtual Hosting Control System (VHCS) 2.4.7.1 and earlier does not verify the old password when a user changes the password, which may allow remote attackers to gain unauthorized access.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2006-02-14 16:02
Updated : 2018-10-19 08:45
NVD link : CVE-2006-0684
Mitre link : CVE-2006-0684
JSON object : View
CWE
Products Affected
virtual_hosting_control_system
- virtual_hosting_control_system