Total vulnerabilities in the database
PHP-Nuke 4.4.1a allows remote attackers to modify a user's email address and obtain the password by guessing the user id (UID) and calling user.php with the saveuser operator.
Software | From | Fixed in |
---|---|---|
francisco_burzi / php-nuke | 4.4.1a | 4.4.1a.x |