CVE-2008-6716

Pre ADS Portal < 2.0 - Unauthenticated Improper Authentication in Admin Home Page

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2008-6716. PoCs published by G4N0K.

AI-analyzed exploit summary This document details multiple vulnerabilities in Pre ADS Portal <= 2.0, including admin bypass and XSS flaws. It provides URLs for exploitation and live examples but lacks functional exploit code.

Description

homeadmin/adminhome.php in Pre ADS Portal 2.0 and earlier does not require administrative authentication, which allows remote attackers to have an unspecified impact via a direct request.

Exploits (1)

exploitdb WRITEUP VERIFIED
by G4N0K · textwebappsphp
https://www.exploit-db.com/exploits/7017

This document details multiple vulnerabilities in Pre ADS Portal <= 2.0, including admin bypass and XSS flaws. It provides URLs for exploitation and live examples but lacks functional exploit code.

Classification
Writeup 90%
Attack Type
Xss | Auth Bypass
Complexity
Trivial
Reliability
Reliable
Target: Pre ADS Portal <= 2.0
No auth needed
Prerequisites: Access to the target web application
devstral-2 · analyzed Feb 18, 2026 Full analysis →

References (3)

Core 3
Core References
Exploit, Third Party Advisory exploit x_refsource_exploit-db
https://www.exploit-db.com/exploits/7017
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/46399
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/32151

Scores

EPSS 0.0247
EPSS Percentile 82.4%

Details

CWE
CWE-287
Status published
Products (1)
preprojects/pre_ads_portal < 2.0
Published Apr 13, 2009
Tracked Since Feb 18, 2026