vendor:
Flip
by:
undefined1_
5.5
CVSS
MEDIUM
Admin Creation
CWE
Product Name: Flip
Affected Version From:
Affected Version To:
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested:
Flip <= 3.0
This Perl script exploits a vulnerability in the Flip <= 3.0 application that allows an attacker to create an admin account. The script takes a URL as input and prompts the user for a desired username and password. It then sends a POST request to the target URL with the necessary parameters to create the admin account. If successful, the script prints 'OK'.
Mitigation:
The vendor should release a patch to fix this vulnerability.