CVE-2008-7156
02.09.2009, 17:30
EkinBoard 1.1.0 and earlier, when register_globals is enabled, allows remote attackers to bypass authorization and gain administrator privileges by setting the _groups[] parameter to 2, as demonstrated via backup.php.Enginsight
Vendor | Product | Version |
---|---|---|
ekinboard | ekinboard | 𝑥 ≤ 1.1.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration