frame.html in Aida-Web (Aida Web) allows remote attackers to bypass a protection mechanism and obtain comment and task details via modified values to the (1) Mehr and (2) SUPER parameters.
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.
Link | Tags |
---|---|
http://osvdb.org/45300 | vdb entry |
http://www.securityfocus.com/archive/1/483749/100/0/threaded | mailing list |
https://exchange.xforce.ibmcloud.com/vulnerabilities/38504 | vdb entry |
http://securityreason.com/securityalert/3385 | third party advisory |
http://www.securityfocus.com/bid/26464 | vdb entry exploit |