Ben Chivers Easy Homepage Creator文件修改漏洞

漏洞信息详情

Ben Chivers Easy Homepage Creator文件修改漏洞

漏洞简介

Easy Homepage Creator 1.0版本中edit.cgi的print_html_to_file函数不能检查用户凭证。远程攻击者可以利用该漏洞修改其他用户主页。

漏洞公告

Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: vuldb@securityfocus.com .
@securityfocus.com>

参考网址

来源: BUGTRAQ
名称: 20020727 Easy Homepage Creator Vulnerability
链接:http://archives.neohapsis.com/archives/bugtraq/2002-07/0350.html

来源: BID
名称: 5340
链接:http://www.securityfocus.com/bid/5340

来源: XF
名称: easy-homepage-gain-access(9696)
链接:http://www.iss.net/security_center/static/9696.php

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享