7.5
CVSSv2

CVE-2007-5752

Published: 31/10/2007 Updated: 15/10/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 760
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

adduser.php in PHP-AGTC Membership (AGTC-Membership) System 1.1a does not require authentication, which allows remote malicious users to create accounts via a modified form, as demonstrated by an account with admin (userlevel 4) privileges.

Vulnerable Product Search on Vulmon Subscribe to Product

agtc websolutions php-agtc membership system 1.1a

Exploits

#!/usr/bin/perl # Note: adduserphp is accessable to a guest/any-user, but if you access through a browser you cant add admin, theres a hidden POST buried in the script, which contains the userlevel # Note: alot of sites run this script and they remove the "powered by" dork Also you can get access to alot of nice site's member sections using thi ...
<!-- - Product : AGTC-Membership system - Version : 11a - Website : wwwagtccouk - Author : 0x90 - Homepage: WwW0x90CoMAr - Contact : Guns[at]0x90[dot]com[dot]ar - Problem : Admin Added Access --> <form name="form1" method="post" action="[target]/adduserphp"> <h3 align="center">AGTC-Membership system v11a ...