CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 6.8. It may be remotely exploitable.
CVE
CVE-2012-6562
Severity
MEDIUM
CVSS
6.8
EPSS
1.34%
Original NVD Description
engine/lib/users.php in Elgg before 1.8.5 does not properly specify permissions for the useradd action, which allows remote attackers to create arbitrary accounts.