CVE-2004-2715 - Public spirited Showtime
Description
edituser.php3 in PHPMyChat 0.14.5 allow remote attackers to bypass authentication and gain administrative privileges by setting the do_not_login parameter to false.
Reference
http://archives.neohapsis.com/archives/bugtraq/2004-06/0252.html http://www.securityfocus.com/bid/10556 http://www.osvdb.org/7149 http://securitytracker.com/id?1010515 http://secunia.com/advisories/11894 https://exchange.xforce.ibmcloud.com/vulnerabilities/16440