Internal/Views/addUsers.php in Schben Adive 2.0.7 allows remote unprivileged users (editor or developer) to create an administrator account via admin/user/add, as demonstrated by a Python PoC script.
The web application does not adequately enforce appropriate authorization on all restricted URLs, scripts, or files.
Link | Tags |
---|---|
https://github.com/ferdinandmartin/adive-php | broken link |
https://hackpuntes.com/cve-2019-14347-escalacion-de-privilegios-en-adive/ | third party advisory exploit |
http://packetstormsecurity.com/files/155213/Adive-Framework-2.0.7-Privilege-Escalation.html | third party advisory vdb entry exploit |