Ezboo Webstats 3.03 - Administrative Authentication Bypass

EDB-ID:

29610


Author:

sn0oPy

Type:

webapps


Platform:

PHP

Date:

2007-02-16


source: https://www.securityfocus.com/bid/22590/info

Ezboo webstats is prone to a vulnerability that will let attackers gain administrative access to the application because it fails to properly validate access. 

http://www.example.com/ezwebstats/update.php
http://www.example.com/ezwebstats/config.php