vendor:
SolarCMS 0.53.8 (Forum)
by:
athos
8.8
CVSS
HIGH
Remote Cookies Disclosure
N/A
CWE
Product Name: SolarCMS 0.53.8 (Forum)
Affected Version From: SolarCMS 0.53.8
Affected Version To: SolarCMS 0.53.8
Patch Exists: NO
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2020
SolarCMS 0.53.8 (Forum) Remote Cookies Disclosure Exploit
SolarCMS 0.53.8 (Forum) Remote Cookies Disclosure Exploit is an exploit that allows an attacker to gain access to the cookies of a user on the SolarCMS 0.53.8 (Forum) platform. The exploit works by sending a specially crafted HTTP request to the server, which then returns the user's cookies in the response. The attacker can then use the cookies to gain access to the user's account.
Mitigation:
The best way to mitigate this vulnerability is to ensure that all user input is properly sanitized and validated before being used in any requests to the server.