index.php in ADN Forum 1.0b and previous versions allows remote malicious users to bypass authentication and gain sysop access via a fpusuario cookie composed of an initial sysop: string, an arbitrary password field, and a final :sysop:0 string.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
adnforum adnforum |