admin/uploads.php in PHP-Update 2.7 and previous versions allows remote malicious users to gain privileges by setting the rights[7] parameter to 1 during a login action.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
php-update php-update |