admin/index.php in Evilsentinel 1.0.9 and previous versions sends a redirect to the web browser but does not exit, which allows remote malicious users to gain administrative privileges and make arbitrary configuration changes.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
evilsentinel evilsentinel |