CVE Database
/

CVE-2008-5565

Back to search

CVE-2008-5565

Published: Dec 15, 2008

Modified: Aug 7, 2024

PUBLISHED

Description

Cross-site request forgery (CSRF) vulnerability in admin/settings.php in DL PayCart 1.34 and earlier allows remote attackers to change the admin password via a logout action in conjunction with the NewAdmin, NewPass1, and NewPass2 parameters.

VendorProductVersions

n/a

n/a

affected
n/a

References

4730
third-party-advisory
x_refsource_SREASON
33038
third-party-advisory
x_refsource_SECUNIA
7365
exploit
x_refsource_EXPLOIT-DB

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now