Splatt Forums Remote Authentication Bypass Vulnerability
BID:15152
Info
Splatt Forums Remote Authentication Bypass Vulnerability
| Bugtraq ID: | 15152 |
| Class: | Access Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 20 2005 12:00AM |
| Updated: | Oct 20 2005 12:00AM |
| Credit: | Edgar Carrillo Egea is credited with the discovery of this vulnerability. |
| Vulnerable: |
Splatt Forum 3.2 Splatt Forum 3.1 Splatt Forum 3.0 |
| Not Vulnerable: |
Splatt Forum 4.1.1 Splatt Forum 4.0 |
Discussion
Splatt Forums Remote Authentication Bypass Vulnerability
Splatt Forums is prone to a remote authentication bypass vulnerability.
An attacker may bypass the administrative logon process and make changes to posts with the effective rights of the forum administrator.
Splatt Forums is prone to a remote authentication bypass vulnerability.
An attacker may bypass the administrative logon process and make changes to posts with the effective rights of the forum administrator.
Exploit / POC
Splatt Forums Remote Authentication Bypass Vulnerability
No exploit is required.
No exploit is required.
Solution / Fix
Splatt Forums Remote Authentication Bypass Vulnerability
Solution:
The vendor has released version 4.0 to address this issue.
Solution:
The vendor has released version 4.0 to address this issue.