about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , H2O-CMS PHP Code Injection and Cookie Authentication Bypass Vulnerabilities


Title H2O-CMS PHP Code Injection and Cookie Authentication Bypass Vulnerabilities
Published 2008-10-28-12:00AM
Updated 2008-10-29-01:16PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  StAkeR
Vulnerable  H2OCMS H2OCMS 3.4
Not Vulnerable  
Code  Attackers can exploit these issues via a browser.The following example JavaScript code is available:javascript:document.cookie = "admin=1; path=/";The following exploit code is also available:
  • /data/vulnerabilities/exploits/31691.pl
  • TXT  t3xt 1t!


    Advertising

    Copyright 2007, SecurityDot
    Fri, 18 Dec 2009 01:01:47 +0000

    Friends : milw0rm.com , secunia.com , securityfocus.com
    GOOGLE
    NEWS EXPLOITS VULNS
    exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
    www.875.gd Joomla%252 cafe athal www.seawin Sex.Girls Www.nudegi Clickrec.w global ann kanal D Phoneratic chant www.875.gd phpBB port Ww.Sexlk.C mambo Remo news for c www.soon1 jot spot maxcpm.inf 0815102324 Bigblackbu 200 /compo www.sexyme 200+%252Fc sambal news for c mujeres pe Tagger LE. 200 /compo lo626l bind dns clipe sexi haro&a Clip SEx J tampon indiansexp djl88.cn Suk track jiyouwo.cn key no.800 news for c www.sextee www.wetpus arcade IPB 1.3 ex 123carrosb Darwin Roo Suk namitha