Unrated severityNVD Advisory· Published Jul 12, 2010· Updated Apr 29, 2026
CVE-2010-2685
CVE-2010-2685
Description
siteadmin/adduser.php in Customer Paradigm PageDirector CMS does not properly restrict access, which allows remote attackers to bypass intended restrictions and add administrative users via a direct request.
Affected products
1- cpe:2.3:a:customerparadigm:pagedirector_cms:*:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5- packetstormsecurity.org/1006-exploits/pagedirector-sqladdadmin.txtnvdExploit
- www.exploit-db.com/exploits/14089nvdExploit
- secunia.com/advisories/40367nvdVendor Advisory
- www.vupen.com/english/advisories/2010/1633nvdVendor Advisory
- www.osvdb.org/65831nvd
News mentions
0No linked articles in our index yet.