High
CVSS 7.5
Overview
pages/register/register.php in Fishyshoop 0.930 beta allows remote attackers to create arbitrary administrative users by setting the is_admin HTTP POST parameter to 1.
pages/register/register.php in Fishyshoop 0.930 beta allows remote attackers to ...
pages/register/register.php in Fishyshoop 0.930 beta allows remote attackers to create arbitrary administrative users by setting the is_admin HTTP POST parameter to 1.
This vulnerability is rated 🟠 HIGH.
Recommended actions: