Pre Shopping Mall allows remote attackers to bypass authentication and gain administrative access by setting the (1) adminname and the (2) adminid cookies to "admin".
Weaknesses in this category are related to the management of credentials.
Link | Tags |
---|---|
http://www.vupen.com/english/advisories/2008/3017 | vdb entry |
https://www.exploit-db.com/exploits/6998 | exploit |
https://exchange.xforce.ibmcloud.com/vulnerabilities/48984 | vdb entry |
http://secunia.com/advisories/32557 | third party advisory vendor advisory |