Ocean12 ASP Calendar Manager 1.0 - Authentication Bypass



EKU-ID: 31787 CVE: CVE-2005-4657;OSVDB-22638 OSVDB-ID:
Author: syst3m_f4ult Published: 2005-11-04 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


source: https://www.securityfocus.com/bid/15329/info

Ocean12 ASP Calendar Manager is prone to an authentication bypass vulnerability. This is due to to an access validation error in the application.

The application does properly verify access privileges and allows the attacker to gain access to restricted data.

Version 1.01 is affected; other versions may also be vulnerable.

http://www.example.com/admin/view.asp