admin.php in AlGuest 1.0 guestbook checks for the existence of the admin cookie to authenticate the AlGuest administrator, which allows remote malicious users to bypass the authentication and gain privileges by setting the admin cookie to an arbitrary value.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
alguest alguest 1.0 |