admin/index.php in AV Arcade 2.1b grants administrative privileges when the ava_userid cookie value is 1, which allows remote attackers to perform certain administrative actions.
References
Configurations
History
No history.
Information
Published : 2007-07-10 01:30
Updated : 2018-10-15 21:29
NVD link : CVE-2007-3643
Mitre link : CVE-2007-3643
CVE.ORG link : CVE-2007-3643
JSON object : View
Products Affected
av_scripts
- av_arcade
CWE