mirror of
https://github.com/0xMarcio/cve.git
synced 2026-03-27 05:01:13 +01:00
742 B
742 B
CVE-2007-5486
Description
dotProject before 2.1 does not properly check privileges when invoking the Companies module, which allows remote attackers to access this module via a crafted URL. NOTE: some of these details are obtained from third party information.
POC
Reference
- http://docs.dotproject.net/index.php/Closed_Issues_/Feature_Requests-_2.1
Github
No PoCs found on GitHub currently.