TikiWiki Authentication Bypass Vulnerability
BID:14170
Info
TikiWiki Authentication Bypass Vulnerability
| Bugtraq ID: | 14170 |
| Class: | Access Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 04 2003 12:00AM |
| Updated: | Jun 04 2003 12:00AM |
| Credit: | Thomas Schwartz <[email protected]> is credited with the discovery of this vulerability. |
| Vulnerable: |
TikiWiki Project TikiWiki 1.6.1 |
| Not Vulnerable: |
TikiWiki Project TikiWiki 1.7.1 .1 |
Discussion
TikiWiki Authentication Bypass Vulnerability
Tikiwiki authentication may be bypassed by a malicious user.
Upon entering a valid username,an arbitrary or null password, and clicking on the 'remember me' button, the application does not verify the login credentials properly and logs on that user.
Tikiwiki authentication may be bypassed by a malicious user.
Upon entering a valid username,an arbitrary or null password, and clicking on the 'remember me' button, the application does not verify the login credentials properly and logs on that user.
Exploit / POC
TikiWiki Authentication Bypass Vulnerability
Using Internet Explorer, enter a valid username, no password or an arbitrary
password. Select the 'remember me' box. An error message is displayed.
At this point you are logged on, with full control, to the victim's account.
Using Internet Explorer, enter a valid username, no password or an arbitrary
password. Select the 'remember me' box. An error message is displayed.
At this point you are logged on, with full control, to the victim's account.
Solution / Fix
TikiWiki Authentication Bypass Vulnerability
Solution:
Upgrade the software to the latest version. There are no known workarounds at present.
Solution:
Upgrade the software to the latest version. There are no known workarounds at present.
References
TikiWiki Authentication Bypass Vulnerability
References:
References:
- Sourceforge TikiWiki Site (Thomas Schwartz)
- TikiWiki Homepage (TikiWiki Project)