Admin/users.php in Snaps! Gallery 1.4.4 allows remote attackers to change arbitrary usernames and passwords via the (1) username, or the (2) password and password2 parameters in an edit action.
References
Configurations
History
No history.
Information
Published : 2007-05-16 10:19
Updated : 2024-02-28 11:01
NVD link : CVE-2007-2715
Mitre link : CVE-2007-2715
CVE.ORG link : CVE-2007-2715
JSON object : View
Products Affected
snaps_gallery
- snaps_gallery
CWE