Traidnt UP 'uploadcp/files.php' Insecure Cookie Authentication Bypass Vulnerability
BID:34087
Info
Traidnt UP 'uploadcp/files.php' Insecure Cookie Authentication Bypass Vulnerability
| Bugtraq ID: | 34087 |
| Class: | Access Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 11 2009 12:00AM |
| Updated: | Mar 16 2009 02:46PM |
| Credit: | SP4rT |
| Vulnerable: |
Traidnt UP 2.0 |
| Not Vulnerable: | |
Discussion
Traidnt UP 'uploadcp/files.php' Insecure Cookie Authentication Bypass Vulnerability
Traidnt UP is prone to an authentication-bypass vulnerability because it fails to adequately verify user-supplied input used for cookie-based authentication.
Attackers can exploit this vulnerability to gain unauthorized access to the affected application, which may aid in further attacks.
Traidnt UP 2.0 is vulnerable; other versions may also be affected.
Traidnt UP is prone to an authentication-bypass vulnerability because it fails to adequately verify user-supplied input used for cookie-based authentication.
Attackers can exploit this vulnerability to gain unauthorized access to the affected application, which may aid in further attacks.
Traidnt UP 2.0 is vulnerable; other versions may also be affected.
Exploit / POC
Traidnt UP 'uploadcp/files.php' Insecure Cookie Authentication Bypass Vulnerability
Attackers can exploit this issue via a browser.
The following exploit is available:
Attackers can exploit this issue via a browser.
The following exploit is available:
Solution / Fix
Traidnt UP 'uploadcp/files.php' Insecure Cookie Authentication Bypass Vulnerability
Solution:
The vendor has addressed this issue in the latest downloadable version of the application. Please contact the vendor for details.
Traidnt UP 2.0
Solution:
The vendor has addressed this issue in the latest downloadable version of the application. Please contact the vendor for details.
Traidnt UP 2.0
-
Traidnt Traidnt up V2.0.zip
http://traidnt.net/vb/attachment.php?attachmentid=352512&d=1236806982
References
Traidnt UP 'uploadcp/files.php' Insecure Cookie Authentication Bypass Vulnerability
References:
References:
- Vendor Homepage (Traidnt)