TROYANOSYVIRUS
Voltar para CVEs

CVE-2012-5168

N/A

Descricao

ATutor AContent before 1.2-1 allows remote attackers to modify arbitrary user passwords or category names via a direct request to (1) user/index_inline_editor_submit.php or (2) course_category/index_inline_editor_submit.php.

Detalhes CVE

Pontuacao CVSS v3.1N/A
Publicado10/22/2012
Ultima modificacao4/29/2026
Fontenvd
Avistamentos honeypot0

Produtos afetados

atutor:acontent

Fraquezas (CWE)

CWE-264

Correlacoes IOC

Sem correlacoes registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.