CVE

Id
34544  
CVE No.
CVE-2008-4427  
Status
Candidate  
Description
changepassword.php in Phlatline"s Personal Information Manager (pPIM) 1.0 and earlier does not require administrative authentication, which allows remote attackers to change arbitrary passwords.  
Phase
Assigned (20081003)  
Votes
None (candidate not yet proposed)  
Comments