admin/admin_info/index.php in the Mole Group Gastro Portal (Restaurant Directory) Script does not require administrative authentication, which allows remote attackers to change the admin password via an unspecified form submission.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2010-03-05 10:30
Updated : 2017-09-18 18:30
NVD link : CVE-2009-4675
Mitre link : CVE-2009-4675
JSON object : View
CWE
CWE-287
Improper Authentication
Products Affected
mole-group
- gastro_portal_\(restaurant_directory\)_script