YusASP Web Asset Manager 1.0 allows remote attackers to gain privileges via a direct request to assetmanager.asp.
The web application does not adequately enforce appropriate authorization on all restricted URLs, scripts, or files.
Link | Tags |
---|---|
http://www.securiteam.com/windowsntfocus/5OP0115FPQ.html | patch broken link |
http://www.securityfocus.com/bid/13501 | vdb entry third party advisory broken link |
http://www.osvdb.org/16198 | vdb entry broken link |