CVE-2008-7155
EUVD-2008-711402.09.2009, 17:30
NetRisk 1.9.7 does not properly restrict access to admin/change_submit.php, which allows remote attackers to change the password of arbitrary users via a direct request.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| phprisk | netrisk | 1.9.7 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References