Description
The Admin Access With Levels plugin in osCommerce 1.5.1 allows remote attackers to access files in the "admin/" directory by modifying the in_login parameter to a non-zero value.
Remediation
References
Related Vulnerabilities
WordPress Permissions, Privileges, and Access Controls Vulnerability (CVE-2013-2200)
WordPress Plugin Product Addons & Fields for WooCommerce Unspecified Vulnerability (13.7)
MySQL CVE-2015-0374 Vulnerability (CVE-2015-0374)
LimeSurvey Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2019-16177)