PM.php in Elite Bulletin Board before 1.0.10 allows remote authenticated users to delete arbitrary PM messages and conduct other attacks via modified id fields.
References
Configurations
Information
Published : 2007-07-06 11:30
Updated : 2017-07-28 18:32
NVD link : CVE-2007-3592
Mitre link : CVE-2007-3592
JSON object : View
CWE
Products Affected
elite_bulletin_board
- elite_bulletin_board