Koobi Comment Form Authentication Bypass Vulnerability
BID:28053
Info
Koobi Comment Form Authentication Bypass Vulnerability
| Bugtraq ID: | 28053 |
| Class: | Access Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 29 2008 12:00AM |
| Updated: | Feb 29 2008 05:52PM |
| Credit: | The vendor disclosed this issue. |
| Vulnerable: |
dream4 Koobi 6.25 |
| Not Vulnerable: | |
Discussion
Koobi Comment Form Authentication Bypass Vulnerability
Koobi is prone to an authentication-bypass vulnerability because it fails to perform authentication checks on certain portions of the application.
An attacker can exploit this issue to gain unauthorized access to the affected application. This may lead to further attacks.
Koobi 6.25 is vulnerable; other versions may also be affected.
Koobi is prone to an authentication-bypass vulnerability because it fails to perform authentication checks on certain portions of the application.
An attacker can exploit this issue to gain unauthorized access to the affected application. This may lead to further attacks.
Koobi 6.25 is vulnerable; other versions may also be affected.
Exploit / POC
Koobi Comment Form Authentication Bypass Vulnerability
An attacker can use a browser to exploit this issue.
An attacker can use a browser to exploit this issue.
Solution / Fix
Koobi Comment Form Authentication Bypass Vulnerability
Solution:
The vendor has released a Fix Pack for Koobi 6.25 to address this issue. Please contact the vendor for information on obtaining and applying the Fix Pack.
Solution:
The vendor has released a Fix Pack for Koobi 6.25 to address this issue. Please contact the vendor for information on obtaining and applying the Fix Pack.
References
Koobi Comment Form Authentication Bypass Vulnerability
References:
References:
- Koobi Homepage (dream4)
- Security Update Available Koobi 6.25 Fixpack (dream4)