CVE-2005-2257 Information

Description

The saveProfile function in PhpSlash 0.8.0 allows remote attackers to modify arbitrary profiles and gain privileges by modifying the author_id parameter.

Reference

http://marc.info/?l=bugtraq&m=112076117708139&w=2 http://secunia.com/advisories/15936 http://securitytracker.com/id?1014415

Share on: