add_bookmark.php in Active PHP Bookmarks (APB) 1.1.01 allows remote attackers to add arbitrary bookmarks as other users using a modified auth_user_id parameter.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/11011 | vdb entry |
http://archives.neohapsis.com/archives/bugtraq/2003-01/0049.html | mailing list exploit |
http://www.securityfocus.com/bid/6546 | vdb entry |