- 34,644
- 0
- 18 Дек 2022
- EDB-ID
- 25201
- Проверка EDB
-
- Пройдено
- Автор
- [email protected]
- Тип уязвимости
- WEBAPPS
- Платформа
- CGI
- CVE
- cve-2005-0735
- Дата публикации
- 2005-03-08
Код:
source: https://www.securityfocus.com/bid/12761/info
NewsScript is reported prone to an access validation vulnerability. This issue may allow an unauthorized attacker to add, modify and delete messages.
It is reported that an attacker can exploit this issue by issuing a specially crafted HTTP GET request for the 'newsscript.pl' script to bypass access checks and carry out administrative tasks.
www.example.com/newsscript.pl?mode=admin
- Источник
- www.exploit-db.com