The PHP administration script in popper_mod 1.2.1 and earlier relies on Apache .htaccess authentication, which allows remote attackers to gain privileges if the script is not appropriately configured by the administrator.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Popper_mod | Symatec | 1.0 (including) | 1.0 (including) |
Popper_mod | Symatec | 1.2 (including) | 1.2 (including) |
Popper_mod | Symatec | 1.2.1 (including) | 1.2.1 (including) |