5/12/16 Patch for Admin Privilege Escalation issue in v150-v155


    

20.00

Add to Cart:

We received notification from the Zen Cart Development Team that there existed a potential admin privilege escalation issue whereby logged-in admin users of v1.5.0-to-v1.5.5 (before v1.5.5a) could change their own user profile permissions if they engaged in some hackery.

This only poses a risk when multiple admin users exist AND some have been assigned a profile restricting their privileges to disallow access to certain admin sections ... AND they have some malicious desire to gain access to changing settings or viewing data against which they've been restricted.

The fix involves replacing one file.

 


Shopping Cart

Your cart is empty.

Customer Reviews

Great service

Judy, thank you for your work on my site so happy I found you :)
Read More ->


Extraordinary

Judy your advice and guidance have far surpassed what we could have imagined. You brought our site from a desperate state to a professional...
Read More ->


Judy ROCKS!

What a breath of fresh air! Judy was ready and able to be creative, flexible and VERY helpful.We could not have done it without her.
Read More ->


5 Star Rating

No, I take that back, she gets a 10 Star rating!!! I have been in business a long time and used a lot of IT people during that time, but Judy...
Read More ->


Judy Goes ABOVE and BEYOND

From my experience with the worst, I can tell you that Zen Cart Ecommerce Web Design is the best. Judy has established prices but she goes above and...
Read More ->


Who's Online

There currently are 11 guests online.
Copyright © 2004 - 2019 ZenCart Ecommerce Website Design
Zen Cart Templates Zen Cart Guru
Powered by Zen Cart