update/update_0.1.2_to_0.2.php in LiveStreet 0.2 does not require administrative authentication, which allows remote malicious users to perform DROP TABLE operations via unspecified vectors.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
livestreet livestreet 0.2 |