CVE-2008-6535

admin/settings.php in PayPal eStores allows remote attackers to bypass intended access restrictions and change the administrative password via a direct request with a modified NewAdmin parameter.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:paypalestores:paypal_estores:-:*:*:*:*:*:*:*

Information

Published : 2009-03-26 14:00

Updated : 2017-09-28 18:33


NVD link : CVE-2008-6535

Mitre link : CVE-2008-6535


JSON object : View

CWE
CWE-264

Permissions, Privileges, and Access Controls

Advertisement

dedicated server usa

Products Affected

paypalestores

  • paypal_estores