CVE-2008-6292

Accscripts Acc Autos - Access Control

Title source: rule

Description

Acc Autos 4.0 allows remote attackers to bypass authentication and gain administrative access by setting the (1) username_cookie to "admin," (2) right_cookie to "1," and (3) id_cookie to "1."

Exploits (3)

exploitdb WORKING POC VERIFIED
by x0r · textwebappsphp
https://www.exploit-db.com/exploits/6968
exploitdb WORKING POC
webappsphp
https://www.exploit-db.com/exploits/6965
exploitdb WORKING POC
webappsphp
https://www.exploit-db.com/exploits/6964

Scores

EPSS 0.0368
EPSS Percentile 88.0%

Details

CWE
CWE-264
Status published
Products (1)
accscripts/acc_autos 4.0
Published Feb 26, 2009
Tracked Since Feb 18, 2026