PortalApp 4.0 does not require authentication for (1) forums.asp and (2) content.asp, which allows remote attackers to create and delete forums, topics, and replies.
References
Configurations
Information
Published : 2008-10-20 11:14
Updated : 2017-09-28 18:32
NVD link : CVE-2008-4614
Mitre link : CVE-2008-4614
JSON object : View
CWE
CWE-287
Improper Authentication
Products Affected
portalapp
- portalapp