admin/admin_membre/fiche_membre.php in AnnonceScriptHP 2.0 allows remote attackers to obtain sensitive information via the idmembre parameter, which discloses the passwords for arbitrary users.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Annoncescripthp | Scriptphp | 2.0 (including) | 2.0 (including) |