C.P.Sub 4.5 - Authentication Bypass
This exploit describes an authentication bypass vulnerability in C.P.Sub <= v4.5, where the 'user_com' parameter can be manipulated to gain admin privileges. It also mentions default accounts that allow access to the back-end management page.