AJ Article Authentication Bypass Vulnerabilities

Attackers can exploit these issues via a browser.

The following example URIs are available.

http://www.example.com/[path]/admin/user.php
http://www.example.com/[path]/admin/site.php
http://www.example.com/[path]/admin/articles.php
http://www.example.com/[path]/admin/mail.php
http://www.example.com/[path]/admin/articlesuspend.php
http://www.example.com/[path]/admin/statistics.php
http://www.example.com/[path]/admin/changepassword.php
http://www.example.com/[path]/admin/polling.php
http://www.example.com/[path]/admin/subcategory.php
http://www.example.com/[path]/admin/category.php
http://www.example.com/[path]/admin/logo.php


 

Privacy Statement
Copyright 2010, SecurityFocus