CVE-2004-2715 Information

Description

edituser.php3 in PHPMyChat 0.14.5 allow remote attackers to bypass authentication and gain administrative privileges by setting the do_not_login parameter to false.

Reference

http://archives.neohapsis.com/archives/bugtraq/2004-06/0252.html http://secunia.com/advisories/11894 http://securitytracker.com/id?1010515 http://www.osvdb.org/7149 http://www.securityfocus.com/bid/10556 https://exchange.xforce.ibmcloud.com/vulnerabilities/16440

Share on: