Gonafish.com LinksCaffe 2.0 and 3.0 do not properly restrict access to administrator functions, which allows remote attackers to gain full administration rights via a direct request to Admin/admin1953.php.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Linkscaffe | Gonafish.com | 2.0 (including) | 2.0 (including) |
Linkscaffe | Gonafish.com | 3.0 (including) | 3.0 (including) |