[26737] in bugtraq
Re: PHP-Nuke v5.6 - Users can compromise admin accts
daemon@ATHENA.MIT.EDU (Ravish.)
Mon Aug 19 19:36:02 2002
Date: 17 Aug 2002 04:55:15 -0000
Message-ID: <20020817045515.30322.qmail@mail.securityfocus.com>
Content-Type: text/plain
Content-Disposition: inline
Content-Transfer-Encoding: binary
MIME-Version: 1.0
From: "Ravish." <ravish@3mnetwork.com>
To: bugtraq@securityfocus.com
I already brought light on this issue few months back. I contacted the
author through Private Message but never got a reply. The similar issue
also exists in Post Nuke (http://www.postnuke.com). See
http://www.securitytracker.com/alerts/2002/Mar/1003781.html and
http://packetstorm.decepticons.org/0203-exploits/php-nuke.5.5.css.txt for
more info.