about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , H2O-CMS PHP Code Injection and Cookie Authentication Bypass Vulnerabilities


Title H2O-CMS PHP Code Injection and Cookie Authentication Bypass Vulnerabilities
Published 2008-10-28-12:00AM
Updated 2008-10-29-01:16PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  StAkeR
Vulnerable  H2OCMS H2OCMS 3.4
Not Vulnerable  
Code  Attackers can exploit these issues via a browser.The following example JavaScript code is available:javascript:document.cookie = "admin=1; path=/";The following exploit code is also available:
  • /data/vulnerabilities/exploits/31691.pl
  • TXT  t3xt 1t!


    Advertising

    Copyright 2007, SecurityDot
    Thu, 17 Dec 2009 13:34:22 +0000

    Friends : milw0rm.com , secunia.com , securityfocus.com
    GOOGLE
    NEWS EXPLOITS VULNS
    exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
    Sendmail 8 www.pamira www.gouwzn phpmyadmin httpdlight shop576572 www.xwodi5 ms+sancha+ vISTA trisha bat indiansexp kmitaadmin sheria Video sex tor Tamilacter mambo Remo www.lov1.c 34office.c 200 /compo 200 /compo chuanqisif KalleLoad index.php? file inclu ipb inject interna%25 php-nuke 2 Nakedramba IMGES www.hnshjq Cliker samart mov http://www www.lexsen 180tt www.bideos joomla t123t news for c GET /u Burning Bo %252525252 maxcpm.inf www.drugtr saniya mir news for c GET /u menhu.sksz itan