Back to search
CVE-2009-4091
Published: Nov 27, 2009
Modified: Aug 7, 2024
PUBLISHED
Description
comments.php in Simplog 0.9.3.2, and possibly earlier, does not properly restrict access, which allows remote attackers to edit or delete comments via the (1) edit or (2) del action.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
simplog-comments-security-bypass(54355)
vdb-entry
x_refsource_XF
21390
third-party-advisory
x_refsource_SECUNIA
10180
exploit
x_refsource_EXPLOIT-DB
37063
vdb-entry
x_refsource_BID
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now