Beanwebb Guestbook 1.0 - Unauthorized Administrative Access

EDB-ID:

22443

CVE:





Platform:

PHP

Date:

2003-03-29


source: https://www.securityfocus.com/bid/7232/info

A vulnerability has been reported for Guestbook that may allow remote attackers to obtain unauthorized access to administrative functions.

The vulnerability is likely due to insufficient permissions on the 'admin.php' script file. 

http://hostname/guestbook/admin.php