CVE-2009-1582

Million Dollar Text Links 1.0 does not properly restrict administrator access to admin.home.php, which allows remote attackers to bypass intended restrictions and gain privileges via a direct request to admin.home.php after visiting admin.php.
Configurations

Configuration 1 (hide)

cpe:2.3:a:kalptarudemos:million_dollar_text_links:1.0:*:*:*:*:*:*:*

History

21 Nov 2024, 01:02

Type Values Removed Values Added
References () http://osvdb.org/54204 - () http://osvdb.org/54204 -
References () http://secunia.com/advisories/34994 - Vendor Advisory () http://secunia.com/advisories/34994 - Vendor Advisory
References () http://www.securityfocus.com/bid/34809 - () http://www.securityfocus.com/bid/34809 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/50306 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/50306 -
References () https://www.exploit-db.com/exploits/8605 - () https://www.exploit-db.com/exploits/8605 -

Information

Published : 2009-05-07 23:30

Updated : 2025-04-09 00:30


NVD link : CVE-2009-1582

Mitre link : CVE-2009-1582

CVE.ORG link : CVE-2009-1582


JSON object : View

Products Affected

kalptarudemos

  • million_dollar_text_links
CWE
CWE-264

Permissions, Privileges, and Access Controls