Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2008-3203
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2008-3203

Description:
js/pages/pages_data.php in AuraCMS 2.2 through 2.2.2 does not perform authentication, which allows remote attackers to add, edit, and delete web content via a modified id parameter.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/43682

SAID
  Secunia Advisory: SA31000

MILW0RM
  http://milw0rm.com/exploits/6033

CONFIRM
  http://www.auracms.org/

BID
  30169


Return to the previous page.