[] NeoSense

Ocean12 ASP Calendar Manager 1.0 - Authentication Bypass

Author: syst3m_f4ult
type: webapps
platform: asp
port: 
date_added: 2005-11-04 
date_updated: 2013-06-29 
verified: 1 
codes: CVE-2005-4657;OSVDB-22638 
tags: 
aliases:  
screenshot_url:  
application_url: 

source: https://www.securityfocus.com/bid/15329/info

Ocean12 ASP Calendar Manager is prone to an authentication bypass vulnerability. This is due to to an access validation error in the application.

The application does properly verify access privileges and allows the attacker to gain access to restricted data.

Version 1.01 is affected; other versions may also be vulnerable.

http://www.example.com/admin/view.asp