vendor:
PHP Hazir Haber Sitesi Scripti V2
by:
Ahmet Ümit BAYRAM
5.5
CVSS
MEDIUM
Authentication Bypass
287
CWE
Product Name: PHP Hazir Haber Sitesi Scripti V2
Affected Version From: Unknown
Affected Version To: Unknown
Patch Exists: NO
Related CWE:
CPE: a:jettweb:php_hazir_haber_sitesi_scripti_v2
Platforms Tested: Kali Linux
2019
Jettweb PHP Hazir Haber Sitesi Scripti V2 – Authentication Bypass
This exploit allows an attacker to bypass authentication in the Jettweb PHP Hazir Haber Sitesi Scripti V2. By manipulating the username and password fields, an attacker can gain unauthorized access to the administration panel.
Mitigation:
The vendor should release a patch to fix the authentication bypass vulnerability. In the meantime, users can mitigate the risk by implementing strong passwords and using additional security measures such as IP whitelisting.