Akopia Interchange Sample Files Vulnerability

A vulnerability exists in components of Akopia Interchange E-commerce server.

Versions of Interchange ship with sample E-commerce 'stores' to demonstrate the functionality of the software.

These sample files contain a configuration error which makes it possible for unauthenticated remote users to connect to the demo stores' web-based administration interface. Through this interface it is possible for a malicious user to read or change the customer data, product items and order information.


 

Privacy Statement
Copyright 2010, SecurityFocus