include/controlcenter/users.php in Phorum prior to 5.1.22 allows remote authenticated moderators to gain privileges via a modified (1) user_ids POST parameter or (2) userdata array.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
phorum phorum |