CVE-2014-1946
OpenDocMan 1.2.7 and earlier does not properly validate allowed actions, which allows remote authenticated users to bypass an intended access restrictions and assign administrative privileges to themselves via a crafted request to signup.php.
Date published : 2018-04-10
http://www.securityfocus.com/archive/1/531351/100/0/threaded
