CVE Database
/

CVE-2007-2775

Back to search

CVE-2007-2775

Published: May 21, 2007

Modified: Aug 7, 2024

PUBLISHED

Description

AlstraSoft Live Support 1.21 sends a redirect to the web browser but does not exit when administrative credentials are missing, which allows remote attackers to obtain administrative access via a direct request to admin/managesettings.php.

VendorProductVersions

n/a

n/a

affected
n/a

References

3957
exploit
x_refsource_EXPLOIT-DB
24073
vdb-entry
x_refsource_BID
36638
vdb-entry
x_refsource_OSVDB
25337
third-party-advisory
x_refsource_SECUNIA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now