Open Bulletin Board (OpenBB) 1.0.0 RC3 allows remote attackers to bypass authentication and access modifier options via a direct request to moderator.php with the action and ismod parameters.Referenceshttp://marc.info/?l=vuln-dev&m=102221487407632&w=2http://www.securityfocus.com/bid/4823http://www.iss.net/security_center/static/9160.php