CVE-2008-4167

useradmin.php in Easy Photo Gallery (aka Ezphotogallery) 2.1 does not require administrative authentication, which allows remote attackers to (1) add or (2) remove an Administrator account.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:ezphotogallery:ezphotogallery:2.1:*:*:*:*:*:*:*

Information

Published : 2008-09-22 11:34

Updated : 2017-09-28 18:32


NVD link : CVE-2008-4167

Mitre link : CVE-2008-4167


JSON object : View

CWE
CWE-287

Improper Authentication

Advertisement

dedicated server usa

Products Affected

ezphotogallery

  • ezphotogallery