cve/2009/CVE-2009-4089.md
2024-06-18 02:51:15 +02:00

750 B

CVE-2009-4089

Description

telepark.wiki 2.4.23 and earlier allows remote attackers to bypass authorization and (1) delete arbitrary pages via a modified pageID parameter to ajax/deletePage.php or (2) delete arbitrary comments via a modified pageID parameter to ajax/deleteComment.php.

POC

Reference

Github

No PoCs found on GitHub currently.