Loading...
Loading...
admin/edit_user.php in KerviNet Forum 1.1 and earlier does not require administrative authentication, which allows remote attackers to delete arbitrary accounts and conduct SQL injection attacks via the del_user_id parameter.
July 5, 2009
April 23, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2009-2328
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.