PHProjekt 2.0 through 3.1 allows remote attackers to view or modify data via requests to certain scripts that do not verify if the user is logged in.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/8943 | vdb entry |
http://online.securityfocus.com/archive/1/269407 | mailing list |
http://www.securityfocus.com/bid/4599 | vdb entry patch |