Insecure permissions in 14Finger v1.1 allow attackers to escalate privileges from normal user to Administrator via a crafted POST request.
A product inherits a set of insecure permissions for an object, e.g. when copying from an archive file, without user awareness or involvement.
Link | Tags |
---|---|
https://github.com/b1ackc4t/14Finger/issues/12 | issue tracking exploit |