Cross-site request forgery (CSRF) vulnerability in admin/admincenter.php in webSPELL 4.01.02 allows remote attackers to assign the superadmin privilege level to arbitrary accounts as administrators via an "update member" action.
References
Configurations
Information
Published : 2008-02-04 18:00
Updated : 2018-10-15 15:01
NVD link : CVE-2008-0575
Mitre link : CVE-2008-0575
JSON object : View
CWE
CWE-352
Cross-Site Request Forgery (CSRF)
Products Affected
webspell
- webspell