Active Server Corner ASP Calendar 1.0 - Administrative Access



EKU-ID: 30210 CVE: CVE-2004-1400;OSVDB-12547 OSVDB-ID:
Author: ali reza AcTiOnSpIdEr Published: 2004-12-14 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


source: https://www.securityfocus.com/bid/11931/info

ASP Calendar is reported prone to an unauthorized administrative access vulnerability. An unauthorized remote attacker can access an administrative script and potentially gain administrative access to the application.

It is believed that this issue affects ASP Calendar Version 1.

http://www.example.com/***/admin/main.asp
*** : directory of asp calendar