- 34,644
- 0
- 18 Дек 2022
- EDB-ID
- 21203
- Проверка EDB
-
- Пройдено
- Автор
- MARK COOPER
- Тип уязвимости
- REMOTE
- Платформа
- WINDOWS
- CVE
- cve-2002-0236
- Дата публикации
- 2002-01-16
Код:
source: https://www.securityfocus.com/bid/3784/info
VitalNet is part of Lucent's VitalSuite SP product family. VitalNet allows users to monitor, analyze, manage and predict the performance of their network infrastructure.
The implementation of VitalNet's cookie-based authentication mechanism is flawed. An attacker who successfully guesses a correct username can gain access to the server without need of a valid password.
http://<serverip>/cgi-bin/VsSetCookie.exe?vsuser=<user_name>
- Источник
- www.exploit-db.com