vendor:
Boutique module
by:
[AR51]Kevinos
N/A
CVSS
N/A
Unknown
Unknown
CWE
Product Name: Boutique module
Affected Version From: Unknown
Affected Version To: Unknown
Patch Exists: Unknown
Related CWE:
CPE:
Platforms Tested: Unknown
2010
module boutique nuked klan
This exploit targets the 'Boutique' module in the 'Nuked Klan' content management system. It allows an attacker to manipulate the 'catid' parameter in the 'op=cat' action of the 'index.php?file=Boutique' URL, potentially leading to unauthorized access or other malicious activities.
Mitigation:
It is recommended to update the 'Boutique' module to the latest version or apply any relevant patches provided by the vendor. Additionally, proper input validation and sanitization should be implemented to prevent unauthorized access or manipulation of the 'catid' parameter.