|
SaveWebPortal contains a flaw that may allow a remote attacker to bypass authentication settings and execute arbitrary code. The problem is that the application does not restrict access to the 'editerfichier.php' script, which may allow a remote attacker to arbitrary manipulate files and inlcude PHP scripts that would be executed on the server resulting in a loss of integrity.
|