High
CVSS 7.5
Overview
The Admin Access With Levels plugin in osCommerce 1.5.1 allows remote attackers to access files in the "admin/" directory by modifying the in_login parameter to a non-zero value.
The Admin Access With Levels plugin in osCommerce 1.5.1 allows remote attackers ...
The Admin Access With Levels plugin in osCommerce 1.5.1 allows remote attackers to access files in the "admin/" directory by modifying the in_login parameter to a non-zero value.
This vulnerability is rated 🟠 HIGH.
Recommended actions: