Security Advisory
CVE-2018-15888
9.8
CRITICAL
Vulnerability Description
An issue was discovered in ASPCMS 2.5.6. When registering ordinary users in the addUser function of the /member/reg.asp page, they can be registered with the super administrators GroupID directly.
Published Date
August 26, 2018
Official Source
NIST NVD Advisory