High
CVSS 7.5
Overview
Hosting Controller 6.1 Hotfix 1.9 and earlier allows remote attackers to register arbitrary users via a direct request to addsubsite.asp with the loginname and password parameters set.
Hosting Controller 6.1 Hotfix 1.9 and earlier allows remote attackers to registe...
Hosting Controller 6.1 Hotfix 1.9 and earlier allows remote attackers to register arbitrary users via a direct request to addsubsite.asp with the loginname and password parameters set.
This vulnerability is rated 🟠 HIGH.
Recommended actions: