MyGuestbook Weak Cookie...

- AV AC AU C I A
发布: 2003-02-21
修订: 2025-04-13

In some cases MyGuestbook relies solely on the existence of a cookie token rather than the contents of the cookie when determining the authenticity of a user. The attacker may gain unauthorized access to administrative pages without the software sufficiently checking the properties of the local cookie. This vulnerability has been reported for MyGuestbook version 3.0, previous versions may also be affected.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息