Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Zmerge Administration Database Insecure Default Access Control List

The Zmerge Administration database default configuration includes an insecure access conrtol list which would allow unauthorized users to modify data import/export scripts. Attackers could exploit this vulnerability to read/write modify files from/to a target filesystem. This may result in the attacker gaining access to the affected host.







 

Privacy Statement
Copyright 2008, SecurityFocus