Vulnerabilities > CVE-2010-5318 - Credentials Management vulnerability in Basic-Cms Sweetrice 0.6.7.1
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
The password-reset feature in as/index.php in SweetRice CMS before 0.6.7.1 allows remote attackers to modify the administrator's password by specifying the administrator's e-mail address in the email parameter.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Common Weakness Enumeration (CWE)
Exploit-Db
description | SweetRice CMS 0.6.7 Multiple Vulnerabilities. CVE-2010-5317,CVE-2010-5318. Webapps exploit for php platform |
id | EDB-ID:15413 |
last seen | 2016-02-01 |
modified | 2010-11-04 |
published | 2010-11-04 |
reporter | High-Tech Bridge SA |
source | https://www.exploit-db.com/download/15413/ |
title | sweetrice CMS 0.6.7 - Multiple Vulnerabilities |