Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qx6m-x75q-h5q2

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

OTManager CMS 2.4 allows remote attackers to bypass authentication and gain administrator privileges by setting the ADMIN_Hora, ADMIN_Logado, and ADMIN_Nome cookies to certain values, as reachable in Admin/index.php.

OTManager CMS 2.4 allows remote attackers to bypass authentication and gain administrator privileges by setting the ADMIN_Hora, ADMIN_Logado, and ADMIN_Nome cookies to certain values, as reachable in Admin/index.php.

EPSS

Процентиль: 77%
0.01064
Низкий

Дефекты

CWE-287

Связанные уязвимости

nvd
больше 16 лет назад

OTManager CMS 2.4 allows remote attackers to bypass authentication and gain administrator privileges by setting the ADMIN_Hora, ADMIN_Logado, and ADMIN_Nome cookies to certain values, as reachable in Admin/index.php.

EPSS

Процентиль: 77%
0.01064
Низкий

Дефекты

CWE-287