vendor:
ShaadiClone
by:
x.CJP.x
5.5
CVSS
MEDIUM
Information Disclosure
200
CWE
Product Name: ShaadiClone
Affected Version From: ShaadiClone v2.0
Affected Version To: ShaadiClone v2.0
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested:
Unknown
ShaadiClone v2.0 (addadminmembercode.php) [ Add Admin ]
The addadminmembercode.php file in ShaadiClone v2.0 allows an attacker to gain sensitive information such as usernames and passwords by manipulating the form fields.
Mitigation:
Ensure proper input validation and sanitization to prevent information disclosure vulnerabilities.