CVE-2008-6538
DeStar 0.2.2-5 - Unauthenticated Arbitrary User Addition via Direct Request
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-6538. PoCs published by nonroot.
AI-analyzed exploit summary This exploit targets a vulnerability in destar 0.2.2-5, allowing an unauthenticated attacker to add a new user with configurator privileges via a crafted HTTP request. The exploit sends a POST request with user details to the vulnerable endpoint, bypassing authentication.
Description
DeStar 0.2.2-5 allows remote attackers to add arbitrary users via a direct request to config/add/CfgOptUser.
Exploits (1)
This exploit targets a vulnerability in destar 0.2.2-5, allowing an unauthenticated attacker to add a new user with configurator privileges via a crafted HTTP request. The exploit sends a POST request with user details to the vulnerable endpoint, bypassing authentication.