CVE-2008-7179
OTManager CMS 2.4 - Unauthenticated Authentication Bypass via Cookie Manipulation
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-7179. PoCs published by Virangar Security.
AI-analyzed exploit summary This exploit demonstrates an authentication bypass vulnerability in OTManager CMS v2.4 by crafting malicious cookies to gain admin access without credentials. The vulnerability arises from insecure cookie handling in the admin login process.
Description
OTManager CMS 2.4 allows remote attackers to bypass authentication and gain administrator privileges by setting the ADMIN_Hora, ADMIN_Logado, and ADMIN_Nome cookies to certain values, as reachable in Admin/index.php.
Exploits (1)
This exploit demonstrates an authentication bypass vulnerability in OTManager CMS v2.4 by crafting malicious cookies to gain admin access without credentials. The vulnerability arises from insecure cookie handling in the admin login process.