vendor:
Mesut Manþet Haber
by:
LionTurk
7,5
CVSS
HIGH
Authentication Bypass
287
CWE
Product Name: Mesut Manþet Haber
Affected Version From: V1.0
Affected Version To: V1.0
Patch Exists: NO
Related CWE: N/A
CPE: a:mesut_manþet_haber:mesut_manþet_haber:1.0
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2020
Mesut Manþet Haber V1.0 Auth Bypass Vulnerability
A vulnerability exists in the Mesut Manþet Haber V1.0 web application which allows an attacker to bypass authentication and gain access to the admin panel. The vulnerability is located in the admin/admin_haber.asp or admin/admin_haber.asp?islem=ekle_kaydet page when directly accessing it without authentication. Successful exploitation of this vulnerability could result in unauthorized access to the admin panel.
Mitigation:
Ensure that authentication is properly implemented and enforced for all administrative functions.