Yasna Yazd Discussion Forum Insecure Default Permission Handling Vulnerabilities

Yazd Discussion Forum is prone to multiple insecure-default-permission-handling vulnerabilities. User accounts are granted unintended permissions.

Exploiting these issues may allow a malicious user to create, modify, or read data in privileged areas of the application.

Versions prior to 3.0 are vulnerable.


 

Privacy Statement
Copyright 2010, SecurityFocus