CVE-2008-1134

OMEGA INSEL 7 - Auth Bypass

Title source: llm

Description

OMEGA (aka Omegasoft) INterneSErvicesLosungen (INSEL) 7 supports authentication with a cookie that lacks a shared secret, which allows remote attackers to login as an arbitrary user via a modified cookie.

Exploits (1)

exploitdb WRITEUP VERIFIED
by MC.Iglo · textwebappsphp
https://www.exploit-db.com/exploits/31003

Scores

EPSS 0.0220
EPSS Percentile 84.2%

Classification

CWE
CWE-287
Status draft

Affected Products (1)

omegasoft/interneserviceslosungen

Timeline

Published Mar 04, 2008
Tracked Since Feb 18, 2026