Exploit Sun AnswerBook2 1.4.2/1.4.3/1.4.4 - Administration Interface Access

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
20144
Проверка EDB
  1. Пройдено
Автор
LLUIS MORA
Тип уязвимости
REMOTE
Платформа
SOLARIS
CVE
cve-2000-0696
Дата публикации
2000-08-08
Код:
source: https://www.securityfocus.com/bid/1554/info

A lack of authentication checks for certain scripts within the administration interface of AnswerBook2 versions 1.4.2 and prior, for Solaris, allows remote users to create administration accounts. By directly accessing the /cgi-bin/admin/admin script present under the AnswerBook2 dwhttpd web server, it is possible to add users to the administration interface. This will allow the attacker to read log files and manage content. 

http://www.example.com:8888/cgi-bin/admin/admin?command=add_user&uid=percebe&password=percebe&re_password=percebe"
 
Источник
www.exploit-db.com

Похожие темы