ImageFolio Pro is a web based image archive package, including administrative support through a web interface. A vulnerability exists in versions of ImageFolio Pro prior to 2.27. Access to an unprotected setup script may allow a remote attacker to create new users of the ImageFolio system with administrative access.
ImageFolio Pro is a web based image archive package, including administrative support through a web interface. A vulnerability exists in versions of ImageFolio Pro prior to 2.27. Access to an unprotected setup script may allow a remote attacker to create new users of the ImageFolio system with administrative access.