vendor:
Mambo Site Server
by:
Simen Bergo
7.5
CVSS
HIGH
Authentication Bypass
287
CWE
Product Name: Mambo Site Server
Affected Version From: 4.0.12 RC2
Affected Version To: 4.0.12 RC2
Patch Exists: Yes
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2003
Mambo Site Server Cookie Authentication Bypass Vulnerability
Mambo Site Server may grant access without sufficiently validating cookie based authentication credentials. It has been reported that Mambo will accept a user cookie sent by the site as an administrative credential. To exploit this issue, the attacker must receive a cookie (such as the one issued during logout) and then use MD5 to encode their session ID in the cookie. The attacker may then access administrative pages using this cookie.
Mitigation:
Upgrade to the latest version of Mambo Site Server