CVE-2007-0873 Information

Description

nabopoll 1.1.2 allows remote attackers to bypass authentication and access certain administrative functionality via a direct request for (1) config_edit.php (2) template_edit.php or (3) survey_edit.php in admin/.

Reference

http://attrition.org/pipermail/vim/2007-February/001341.html http://forums.avenir-geopolitique.net/viewtopic.php?t=2643 http://osvdb.org/33692 http://securityreason.com/securityalert/2232 http://www.securityfocus.com/archive/1/459655/100/0/threaded http://www.securityfocus.com/bid/22509 https://exchange.xforce.ibmcloud.com/vulnerabilities/32472 https://www.exploit-db.com/exploits/3305

Share on: