Centre Online School Software...

- AV AC AU C I A
发布: 2004-07-03
修订: 2025-04-13

It is reported that Centre is vulnerable to multiple vulnerabilities. The first vulnerability lies in the ability to create new accounts without being loggin in and authorized to do so. It is reported that other similar authorization problems exist in the software as well. A second vulnerability is reported to allow an attacker to execute arbitrary PHP scripts in the context of the web application server. These scripts would have to exist on the local filesystem of the server. Multiple undisclosed SQL injection vulnerabilities are reported as well. These issues are all reported in version 1.0 of Centre. Update: Please see the message reference from Adrew Schmadeke <schmad@miller-group.net>. This BID may be retired, or significantly modified.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息