CVE-2008-6854
Xigla Absolute FAQ Manager.NET 6.0 - Unauthenticated Authentication Bypass via Cookie Manipulation
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-6854. PoCs published by Hakxer.
AI-analyzed exploit summary This exploit leverages an insecure cookie handling vulnerability in Absolute FAQ Manager to bypass authentication by setting admin credentials via JavaScript. The PoC demonstrates how an attacker can gain admin access by manipulating the cookie values.
Description
Xigla Software Absolute FAQ Manager.NET 6.0 allows remote attackers to bypass authentication and gain administrative access by setting a cookie to a certain value.
Exploits (1)
This exploit leverages an insecure cookie handling vulnerability in Absolute FAQ Manager to bypass authentication by setting admin credentials via JavaScript. The PoC demonstrates how an attacker can gain admin access by manipulating the cookie values.