Atomic Photo Album 1.1.0 pre4 does not properly handle the apa_cookie_login and apa_cookie_password cookies, which probably allows remote malicious users to bypass authentication and gain administrative access via modified cookies.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
atomic photo album atomic photo album 1.1.0 |