CVE-2008-3375
JamRoom < 3.4.0 - Unauthenticated Authentication Bypass via Serialized Cookie
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-3375. PoCs published by GulfTech Security.
AI-analyzed exploit summary This exploit demonstrates an authentication bypass vulnerability in Jamroom by manipulating serialized data in the JMU_Cookie. It generates two cookie values with different boolean states to bypass authentication and gain administrative access.
Description
The jrCookie function in includes/jamroom-misc.inc.php in JamRoom before 3.4.0 allows remote attackers to bypass authentication and gain administrative access via a boolean value within serialized data in a JMU_Cookie cookie.
Exploits (1)
This exploit demonstrates an authentication bypass vulnerability in Jamroom by manipulating serialized data in the JMU_Cookie. It generates two cookie values with different boolean states to bypass authentication and gain administrative access.