 |
 |

|
 |
Vulnerability details : |
| |
 |
|
Adobe Content Server Add to Bookbag eBook Max Loan Bypass |
|
 |
Fiche créée le 2004-04-09 05:55:26, dernière mise à jour le 2008-03-02 23:49:24
Content Server contains a flaw that may allow a malicious user to bypass restrictions on content. The issue is triggered when a user has reached the limit of books allowed to be checked out, but the "Add to Bookbag" button continues to work. It is possible that the flaw may allow unlimited access to materials resulting in a loss of integrity.
|
| |
| Adobe Systems Incorporated 3.0 Affected | | | Attack Type : Misconfiguration default files, debugging enabled, directory indexing. | Découvert le 2002-07-12 07:00:00 | | Exploit : Exploit Public | Exploit découvert le 2002-07-12 07:00:00 | Impact : Loss of Integrity Assurance that data is unaltered by unauthorized persons.
Examples: XSS, arbitrary command execution, most overflows, most format strings, SQL injection, unauthorized file modification/deletion/creation, remote file inclusion, etc. | | | Location : Remote / Network Access If network access if required and exploit can be done remotely. | | |
| |
| External refs : |
| OSVDB 9300 | | | | | | | | |
| |
| |
| |
| |
|
 |
 |
 |
| Free consultation (search) |
|
|
 |
 |
 |
| |
|
 |
|