CVE-2004-1385 | phpGroupWare up to 0.9.16.003 Error Message preferences.php menuaction privileges management (EDB-24847 / Nessus ID 16399)
A vulnerability has been found in phpGroupWare and classified as critical. This vulnerability affects unknown code of the file preferences.php of the component Error Message Handler. The manipulation of the argument menuaction leads to improper privilege management.
This vulnerability was named CVE-2004-1385. The attack can be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.