EXPLOITDB-EDB-6579

EXPLOITDB text VERIFIED WORKING POC
Exploit for CVE-2008-7027 - Libra File Manager Php Filemanager < 1.18 - Authentication Bypass
AI Analysis

This exploit leverages insecure cookie handling in Libra PHP File Manager by setting arbitrary cookie values via JavaScript, allowing authentication bypass. The PoC demonstrates how an attacker can set 'user' and 'pass' cookies to bypass login mechanisms.

Attack Type
auth_bypass
Complexity
trivial
Reliability
reliable
MITRE ATT&CK
T1189 - Drive-by Compromise T1552 - Unsecured Credentials
Loading exploit code...
Download ZIP Password: eip
Source
Platform Exploitdb
Type webapps
Platform php
Language text
Files 1
Authors
Stack
Vulnerability
CVE-2008-7027
Libra File Manager Php Filemanager < 1.18 - Authentication Bypass