|
vendor:Someone at Stanford university
site:http://sourceforge.net/projects/scarf/
vuln:
There is no admin check on the file generaloptions.php So anyone can go in and make some changes. One thing to do would be create a user, then go into general options and change your user to an admin. You can also change the background, title, and css page through this file.
-navairum