CVE-2014-1632 | Eventum up to 2.3.4 htdocs/setup/index.php hostname permission (EDB-39066 / ID 12843)
A vulnerability was found in Eventum up to 2.3.4. It has been rated as critical. Affected by this issue is some unknown functionality of the file htdocs/setup/index.php. The manipulation of the argument hostname as part of Parameter leads to permission issues.
This vulnerability is handled as CVE-2014-1632. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.