CVE-2016-15002: Ideracorp Webyog Monyog Ultimate

High severity, CVSS 8.8. EPSS: 1% chance of exploitation in the next 30 days.

A vulnerability, which was classified as critical, was found in MONyog Ultimate 6.63. This affects an unknown part of the component Cookie Handler. The manipulation of the argument HasServerEdit/IsAdmin leads to privilege escalation. It is possible to initiate the attack remotely.

Affected products

  • Ideracorp Webyog Monyog Ultimate: version 6.63 only

Published 2022-06-09. Last modified 2026-06-17.