vendor:
Your Articles Directory
by:
Sid3^effects
7,5
CVSS
HIGH
Authentication Bypass
287
CWE
Product Name: Your Articles Directory
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: YES
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Web Application
2010
Authenication Bypass Vulnerability in Articles Directory
Your Articles Directory is the most innovative state of the art solution you need to launch a customizable content driven web site in the shortest period of time. From user-friendly customization options to easy content creation process, Your Articles Directory prides itself in content authoring for its users... regardless of technical limitations. By using the following combo ' or 1=1 or ''=' the attacker can login In the login option: http://server/designs/gator/
Mitigation:
Ensure that authentication credentials are properly validated and that any authentication bypass vulnerabilities are patched.