Unspecified vulnerability in Hosting Controller before 6.1 (aka Hotfix 3.2) allows remote authenticated attackers to gain host admin privileges, list all resellers, or change resellers' passwords via unspecified vectors. NOTE: due to the lack of precise details, it is not clear whether this is related to a previously disclosed issue such as CVE-2005-1788.
| Software | From | Fixed in |
|---|---|---|
| hosting_controller / hosting_controller | 6.1_hotfix_1.4 | 6.1_hotfix_1.4.x |
| hosting_controller / hosting_controller | 6.1_hotfix_1.9 | 6.1_hotfix_1.9.x |
| hosting_controller / hosting_controller | 6.1_hotfix_2.9 | 6.1_hotfix_2.9.x |
| hosting_controller / hosting_controller | 6.1_hotfix_2.8 | 6.1_hotfix_2.8.x |
| hosting_controller / hosting_controller | 6.1_hotfix_2.3 | 6.1_hotfix_2.3.x |
| hosting_controller / hosting_controller | 6.1_hotfix_1.7 | 6.1_hotfix_1.7.x |
| hosting_controller / hosting_controller | 6.1_hotfix_2.1 | 6.1_hotfix_2.1.x |
| hosting_controller / hosting_controller | 6.1_hotfix_2.0 | 6.1_hotfix_2.0.x |
| hosting_controller / hosting_controller | 6.1 | 6.1.x |