CVE-2009-1550

Severity CVSS v4.0:
Pending analysis
Type:
CWE-264 Permissions, Privileges, and Access Control
Publication date:
06/05/2009
Last modified:
29/09/2017

Description

Zakkis Technology ABC Advertise 1.0 does not properly restrict access to admin.inc.php, which allows remote attackers to obtain the administrator login name and password via a direct request.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:zakkis:abc_advertise:1.0:*:*:*:*:*:*:*