Admin/users.php in Snaps! Gallery 1.4.4 allows remote attackers to change arbitrary usernames and passwords via the (1) username, or the (2) password and password2 parameters in an edit action.
References
Configurations
History
21 Nov 2024, 00:31
Type | Values Removed | Values Added |
---|---|---|
References | () http://0day.2600.ir/exploits/3900 - | |
References | () http://www.securityfocus.com/bid/23940 - | |
References | () http://www.vupen.com/english/advisories/2007/1781 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/34300 - | |
References | () https://www.exploit-db.com/exploits/3900 - |
Information
Published : 2007-05-16 10:19
Updated : 2025-04-09 00:30
NVD link : CVE-2007-2715
Mitre link : CVE-2007-2715
CVE.ORG link : CVE-2007-2715
JSON object : View
Products Affected
snaps_gallery
- snaps_gallery
CWE