lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Message-ID: <422C8D7C.5060404@n0ki.de> Date: Mon, 07 Mar 2005 18:21:00 +0100 From: Matthias <admin@...i.de> To: bugtraq@...urityfocus.com Subject: Re: phpBB 2.0.12 Session Handling Administrator Authentication Bypass -SIMPLIFIED- Wesley aka PPC wrote: > > ----------------------------------- > > phpBB 2.0.12 Session Handling > Administrator Authentication > Bypass EXPLOIT -SIMPLIFIED- > - By PPC^Rebyte > > ----------------------------------- > ... > 3* Preparation > ______________ > > 1. Register at forum? > > 2. Log in with account > + UNCHECK "Log in automatically" > ... you do not need to register and login, if you browse on a forum a ANONYMOUS (id=0) Session is opened and a Cookie created. Now you must delete the phpbb2_sid cookie and write the exploit code in the phpbb2_data cookie. So you don't must login.
Powered by blists - more mailing lists