Total vulnerabilities in the database
Absolute Form Processor XE 1.5 allows remote attackers to bypass authentication and gain administrative access by setting the xlaAFPadmin cookie to "lvl=1&userid=1."
Software | From | Fixed in |
---|---|---|
xigla / absolute_control_panel_xe | 1.5 | 1.5.x |