It looks like you're new here. If you want to get involved, click one of these buttons!
bug details!
To: Semtex-Primed
undefined
Raise again and again until lambs become Lion..
Never give up !!!!
Ok, checked it out and looks like basic data-entry priviledges, you can add and remove entries to some sort of database. For an IT solutions provider it's very poor security. One idea may be that if it allows you to upload something such as a picture or something similiar through the admin panel, you 'may' be able to get away with uploading a shell and disguising it. I say may, because i've not checked it out that thoroughly. I'd be interested to hear what Xin thinks.