Vulnerabilities > CVE-2007-1553 - Remote Security vulnerability in Guestbara

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
NONE
network
low complexity
guestbara
exploit available

Summary

admin/configuration.php in Guestbara 1.2 and earlier allows remote attackers to modify the e-mail, name, and password of the admin account by setting the zapis parameter to "ok" and providing modified admin_mail, login, and pass parameters.

Vulnerable Configurations

Part Description Count
Application
Guestbara
1

Exploit-Db

descriptionGuestbara <= 1.2 Change Admin Login and Password Exploit. CVE-2007-1553. Webapps exploit for php platform
fileexploits/php/webapps/3506.html
idEDB-ID:3506
last seen2016-01-31
modified2007-03-18
platformphp
port
published2007-03-18
reporterKacper
sourcehttps://www.exploit-db.com/download/3506/
titleGuestbara <= 1.2 Change Admin Login and Password Exploit
typewebapps