Allaire Forums 的”rightAccessAllForums” 漏洞

漏洞信息详情

Allaire Forums 的”rightAccessAllForums” 漏洞

漏洞简介

Allaire Forums 2.0.5存在漏洞,远程攻击者可以通过rightAccessAllForums或rightModerateAllForums变量绕过访问限制到达安全会议。

漏洞公告

Allaire has released a patch for this issue.
Allaire Forums 2.0.5

  • Allaire forumfixThe template files were created to replace the existing files on your system. It is recommended you back up your existing data before over-writing or replacing any files. You will also need to modify these files to reflect any personal coding changes you have made to your existing Forums installatio

    http://download.allaire.com/patches/ASB00-07forumfix.zip

参考网址

来源: ALLAIRE
名称: ASB00-06
链接:http://www2.allaire.com/handlers/index.cfm?ID=15099&Method=Full

来源: BID
名称: 1085
链接:http://www.securityfocus.com/bid/1085

来源: OSVDB
名称: 1270
链接:http://www.osvdb.org/1270

受影响实体

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享