Belong Software Site Builder 0.1 beta allows remote attackers to bypass intended access restrictions and perform administrative actions via a direct request to admin/home.php.
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.
Link | Tags |
---|---|
http://securityreason.com/securityalert/4414 | third party advisory |
http://www.securityfocus.com/archive/1/486803/100/200/threaded | mailing list |
https://exchange.xforce.ibmcloud.com/vulnerabilities/39842 | vdb entry |
http://www.securityfocus.com/bid/27402 | vdb entry |