Ocean12 ASP Calendar Manager 1.0 - Authentication Bypass
Author: syst3m_f4ult
type: webapps
platform: asp
port:
date_added: 2005-11-04
date_updated: 2013-06-29
verified: 1
codes: CVE-2005-4657;OSVDB-22638
tags:
aliases:
screenshot_url:
application_url:
source: https://www.securityfocus.com/bid/15329/info
Ocean12 ASP Calendar Manager is prone to an authentication bypass vulnerability. This is due to to an access validation error in the application.
The application does properly verify access privileges and allows the attacker to gain access to restricted data.
Version 1.01 is affected; other versions may also be vulnerable.
http://www.example.com/admin/view.asp