CVE-2008-6143
OwenPoll 1.0 - Unauthenticated Authentication Bypass via Username Cookie
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-6143. PoCs published by Osirys.
AI-analyzed exploit summary The exploit describes an insecure cookie handling vulnerability in OwenPoll 1.0, where the 'username' cookie is set to the username instead of a secure token, allowing an attacker to bypass authentication by setting the cookie to the admin's username.
Description
OwenPoll 1.0 allows remote attackers to bypass authentication and obtain administrative access via a modified account name in the username cookie.
Exploits (1)
The exploit describes an insecure cookie handling vulnerability in OwenPoll 1.0, where the 'username' cookie is set to the username instead of a secure token, allowing an attacker to bypass authentication by setting the cookie to the admin's username.