The print_html_to_file function in edit.cgi for Easy Homepage Creator 1.0 does not check user credentials, which allows remote malicious users to modify home pages of other users.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
easy scripts archive advanced easy homepage creator 1.0 |
||
easy scripts archive easy homepage creator 1.0 |