4.6
CVSSv2

CVE-2005-1708

Published: 24/05/2005 Updated: 18/10/2016
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
VMScore: 465
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

templates.admin.users.user_form_processing in Blue Coat Reporter prior to 7.1.2 allows authenticated users to gain administrator privileges via an HTTP POST that sets volatile.user.administrator to true.

Vulnerable Product Search on Vulmon Subscribe to Product

bluecoat reporter

Exploits

source: wwwsecurityfocuscom/bid/13723/info Blue Coat Reporter is prone to a remote privilege escalation vulnerability This issue is due to a failure in the application to properly authenticate a user prior to permitting access to administrator functions A remote authenticated user can manipulate the form for adding new users and create ...