exploit-db-mirror/exploits/php/webapps/24565.txt
Offensive Security 36c084c351 DB: 2021-09-03
45419 changes to exploits/shellcodes

2 new exploits/shellcodes

Too many to list!
2021-09-03 13:39:06 +00:00

9 lines
No EOL
538 B
Text

source: https://www.securityfocus.com/bid/11095/info
MailWorks Professional is reported prone to an authentication bypass vulnerability.
The application uses cookies to store variables that determine the status of the authentication process. An attacker browsing the web application using specially crafted cookie data is able to bypass the authentication process to access the site as an administrative user.
This vulnerability allows a remote attacker to gain administrative access to the affected application.
Cookie: auth=1; uId=1