
19.02.2006, 01:23
|
|
Участник форума
Регистрация: 30.12.2005
Сообщений: 155
Провел на форуме: 2714612
Репутация:
31
|
|
Description ----------- The Drupal Security Team has found that the privilege system of Drupal can be circumvented in a very special case because an input check is not implemented properly.
Impact ------ If public registration is allowed then it is possible for an attacker to obtain additional user roles. As a result, an attacker could grant himself administration privileges.
Багов есть много)
|
|
|