7.5
CVSSv2

CVE-2008-7179

Published: 08/09/2009 Updated: 29/09/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

OTManager CMS 2.4 allows remote malicious users to bypass authentication and gain administrator privileges by setting the ADMIN_Hora, ADMIN_Logado, and ADMIN_Nome cookies to certain values, as reachable in Admin/index.php.

Vulnerable Product Search on Vulmon Subscribe to Product

otmanager otmanager cms 2.4

Exploits

################################################################################### # # # :::::OTManager CMS v24 Insecure Cookie Handling Vulnerability :::: # ############################################################################### ...