vendor:
Open Real Estate
by:
Yashar shahinzadeh
8,8
CVSS
HIGH
CSRF - Adding/Editing administrator account
352
CWE
Product Name: Open Real Estate
Affected Version From: 1.5.1
Affected Version To: 1.5.1
Patch Exists: NO
Related CWE: N/A
CPE: a:monoray:open_real_estate
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Linux & Windows, PHP 5.3.4
2013
Open Real Estate CMS – Multiple vilnerabilities
Following exploits can be used against any site installed "Open Real Estate" CMS. Once the exploit is excuted, an email will send to attacker's email containing activation link. Additionally, for modifying, the administrator's ID is 1, so attack may change the administrator's email address, then he/she may use forget password option and go through administrator panel.
Mitigation:
Implementing CSRF protection, input validation and authentication mechanisms.