vendor:
AGTC-Membership system
by:
0x90
7.5
CVSS
HIGH
Remote Code Execution
CWE
Product Name: AGTC-Membership system
Affected Version From: 1.1a
Affected Version To: 1.1a
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested:
2007
AGTC-Membership system v1.1a (adduser) Remote Add Admin Exploit
The AGTC-Membership system v1.1a allows an attacker to add an admin user remotely, resulting in unauthorized access to the system.
Mitigation:
Update to a patched version of the software.