FreeSeat Unspecified Security Bypass Vulnerability
BID:27270
Info
FreeSeat Unspecified Security Bypass Vulnerability
| Bugtraq ID: | 27270 |
| Class: | Design Error |
| CVE: |
CVE-2008-0294 |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 13 2008 12:00AM |
| Updated: | May 07 2015 05:33PM |
| Credit: | The vendor disclosed this vulnerability. |
| Vulnerable: |
FreeSeat FreeSeat 1.1.5 c |
| Not Vulnerable: |
FreeSeat FreeSeat 1.1.5 d |
Discussion
FreeSeat Unspecified Security Bypass Vulnerability
FreeSeat is prone to a security-bypass vulnerability.
A successful attack will allow an attacker to book a seat multiple times.
This issue affects versions prior to FreeSeat 1.1.5d.
FreeSeat is prone to a security-bypass vulnerability.
A successful attack will allow an attacker to book a seat multiple times.
This issue affects versions prior to FreeSeat 1.1.5d.
Exploit / POC
FreeSeat Unspecified Security Bypass Vulnerability
An attacker can exploit this issue through a browser.
An attacker can exploit this issue through a browser.
Solution / Fix
FreeSeat Unspecified Security Bypass Vulnerability
Solution:
The vendor released an update to address this issue. Please see the references for more information.
FreeSeat FreeSeat 1.1.5 c
Solution:
The vendor released an update to address this issue. Please see the references for more information.
FreeSeat FreeSeat 1.1.5 c
-
FreeSeat freeseat-1.1.5d.tgz
http://downloads.sourceforge.net/freeseat/freeseat-1.1.5d.tgz
References
FreeSeat Unspecified Security Bypass Vulnerability
References:
References:
- FreeSeat 1.1.5d Release Notes (FreeSeat)
- FreeSeat Homepage (FreeSeat)