Exploit Flat Calendar 1.1 - Multiple Administrative Scripts Authentication Bypass Vulnerabilities

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
31908
Проверка EDB
  1. Пройдено
Автор
CRACKERS_CHILD
Тип уязвимости
WEBAPPS
Платформа
PHP
CVE
cve-2008-6736
Дата публикации
2008-06-11
Код:
source: https://www.securityfocus.com/bid/29662/info

Flat Calendar is prone to multiple authentication-bypass vulnerabilities because it fails to perform adequate authentication checks.

An attacker can exploit these issues to gain unauthorized access to the application and make arbitrary changes to its configuration. This may lead to further attacks.

Flat Calendar 1.1 is vulnerable; other versions may also be affected. 

http://www.example.com/calender_path/admin/add.php
http://www.example.com/calender_path/admin/deleteEvent.php?eventNumber=[EVENTNUMBERid]
 
Источник
www.exploit-db.com

Похожие темы