CVE-2008-5708
24.12.2008, 18:29
redirect.php in SlimCMS 1.0.0 does not require authentication, which allows remote attackers to create administrative users by using the newusername and newpassword parameters and setting the newisadmin parameter to 1.Enginsight
| Vendor | Product | Version |
|---|---|---|
| slimcms | slimcms | 1.0.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References