Remote Code Execution in Carbon Communities Product by Carbon Project
CVE-2008-1900
Currently unrated
What is CVE-2008-1900?
The option_Update.asp script within Carbon Communities version 2.4 and earlier is susceptible to unauthorized modifications, allowing remote attackers to alter member data by exploiting a manipulated ID field. This flaw can lead to significant security breaches, as attackers could potentially modify sensitive user information without proper authentication.
