CVE-2009-4089
29.11.2009, 13:07
telepark.wiki 2.4.23 and earlier allows remote attackers to bypass authorization and (1) delete arbitrary pages via a modified pageID parameter to ajax/deletePage.php or (2) delete arbitrary comments via a modified pageID parameter to ajax/deleteComment.php.Enginsight
Vendor | Product | Version |
---|---|---|
telepark | telepark.wiki | 2.4.23 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References