vendor:
Unknown
by:
sha0[at]badchecksum.net
N/A
CVSS
N/A
Bypass vulnerability
Unknown
CWE
Product Name: Unknown
Affected Version From: Unknown
Affected Version To: Unknown
Patch Exists: NO
Related CWE: CVE-2007-2815
CPE: Unknown
Platforms Tested:
2007
NTLM && BASIC AUTH BYPASS
This script allows an attacker to bypass NTLM and Basic Authentication. It takes a website and a protected object as input parameters. It then constructs a malicious URL and uses the Lynx browser to access it. The URL contains parameters that bypass the authentication and access the protected object. The script is based on the vulnerability described in CVE-2007-2815.
Mitigation:
Unknown