Bugtraq mailing list archives

KvGuestbook Remote Add Admin Exploit


From: crazy_king () eno7 org
Date: 11 Feb 2007 12:37:26 -0000

Version : 1.0 Beta

Download : http://www.killervault.com

Files : guestbook.php

Error : function dologin() {
        global $mysql, $gbpass, $gburl;
        $time = time() + 86400*365;
        if($gbpass == $mysql['pass']) {
                setcookie('kvgbcookie', $mysql['pass'], $time, '/');
        }
        header("Location: $gburl");
}

$mysql, $gbpass, $gburl

Mysql & Admin Pass & Admin Name


Current thread: