Could be used for admin user escalation. For example a admin user who only has access to edit products could plant a script to escalate their user account privileges. Giving themselves access to personal data or setting they shouldn't. Good admin user account policy (who has access to them and strong passwords, etc.) can help lessen the risk.
Who is online
Users browsing this forum: Baidu [Spider] and 6 guests