Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-5738. PoCs published by Osirys.
AI-analyzed exploit summary The exploit describes an insecure cookie handling vulnerability in Calendar Script v1.1, where the cookie 'nodstrumCalendarV2' is set to a static value upon successful login, allowing potential session hijacking via JavaScript cookie manipulation.
Description
Nodstrum MySQL Calendar 1.1 and 1.2 allows remote attackers to bypass authentication and gain administrative access by setting the nodstrumCalendarV2 cookie to 1. NOTE: some of these details are obtained from third party information.
Exploits (1)
The exploit describes an insecure cookie handling vulnerability in Calendar Script v1.1, where the cookie 'nodstrumCalendarV2' is set to a static value upon successful login, allowing potential session hijacking via JavaScript cookie manipulation.