Total vulnerabilities in the database
admin/config.php in Evilsentinel 1.0.9 and earlier allows remote attackers to bypass the CAPTCHA test by omitting the es_security_captcha parameter and not invoking captcha.php.
Software | From | Fixed in |
---|---|---|
evilsentinel / evilsentinel | - | 1.0.9.x |