6.8
CVSSv2

CVE-2009-4906

Published: 25/06/2010 Updated: 28/06/2010
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 685
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Cross-site request forgery (CSRF) vulnerability in index.php in Acc PHP eMail 1.1 allows remote malicious users to hijack the authentication of administrators for requests that change passwords.

Vulnerable Product Search on Vulmon Subscribe to Product

accscripts acc php email 1.1

Exploits

______ __ ______ /\ == \ /\ \ /\ __ \ \ \ __< \ \ \ \ \ \/\ \ \ \_____\ \ \_\ \ \_____\ \/_____/ \/_/ \/_____/ 01000010 01101001 01001111 [#]----------------------------------------------------------------[#] # # [+] Acc PHP e ...