index.php in eFiction before 2.0.7 allows remote attackers to bypass authentication and gain privileges by setting the (1) adminloggedin, (2) loggedin, and (3) level parameters to "1".
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2006-08-29 00:04
Updated : 2025-04-03 01:03
NVD link : CVE-2006-4427
Mitre link : CVE-2006-4427
CVE.ORG link : CVE-2006-4427
JSON object : View
Products Affected
efiction
- efiction
CWE