CVE-2008-1727
KnowledgeQuest 2.5 and 2.6 - Unauthenticated Arbitrary Admin Account Creation via admincheck.php
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-1727. PoCs published by t0pP8uZz.
AI-analyzed exploit summary This exploit targets KnowledgeQuest 2.5 by sending a crafted POST request to admincheck.php to add an arbitrary admin account. It leverages an authentication bypass vulnerability to create a new admin user with specified credentials.
Description
KnowledgeQuest 2.5 and 2.6 does not require authentication for access to admincheck.php, which allows remote attackers to create arbitrary admin accounts.
Exploits (1)
This exploit targets KnowledgeQuest 2.5 by sending a crafted POST request to admincheck.php to add an arbitrary admin account. It leverages an authentication bypass vulnerability to create a new admin user with specified credentials.