CVE-2007-3643 Information
Feb 14, 2021
cve
Description
admin/index.php in AV Arcade 2.1b grants administrative privileges when the ava_userid cookie value is 1 which allows remote attackers to perform certain administrative actions.
Reference
http://osvdb.org/38952 http://securityreason.com/securityalert/2871 http://www.securityfocus.com/archive/1/472666/100/0/threaded http://www.securityfocus.com/bid/24736/info https://exchange.xforce.ibmcloud.com/vulnerabilities/35234
Share on: