CVE

Id
10450  
CVE No.
CVE-2004-2024  
Status
Candidate  
Description
The distribution of Zen Cart 1.1.4 before patch 2 includes certain debugging code in the Admin password retrieval functionality, which allows attackers to gain administrative privileges via password_forgotten.php.  
Phase
Assigned (20050504)  
Votes
None (candidate not yet proposed)  
Comments