SUMMARY :

Class : Input validation error

Remote : Yes

Local : No

Published : 04/26/2007 09:00:00 AM (GMT)

Last modified : 04/26/2007 11:05:00 AM (GMT)

Credit : Bertrand Arquilliere (Steria) is credited with the discovery of this vulnerability

Vulnerable : CONFIDENTIAL

DISCUSSION :

CONFIDENTIAL on the vulnerable application, is weak.

An attaker could exploit this vulnerability to gain unauthorized access to confidential datas, and modify those datas.

EXPLOIT :

Attackers can use a browser to exploit this issue.

Proof of concept : "CONFIDENTIAL"

SOLUTION :

CONFIDENTIAL

REFERENCES :

NONE.