admin/index.php in IPrimal Forums as of 20061105 allows remote attackers to bypass authentication and modify user passwords via a direct request, possibly related to an authentication issue in admin/chk_admin.php.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Iprimal_forums | Iprimal | * | * |