Prozilla Reviews 1.0 allows remote attackers to delete arbitrary users via a modified UserID parameter in a direct request to siteadmin/DeleteUser.php.
References
Configurations
Information
Published : 2008-04-15 03:05
Updated : 2017-09-28 18:30
NVD link : CVE-2008-1783
Mitre link : CVE-2008-1783
JSON object : View
CWE
CWE-264
Permissions, Privileges, and Access Controls
Products Affected
prozilla
- reviews