Exploitation Summary
EIP tracks 1 public exploit for CVE-2009-2293. PoCs published by Evil-Cod3r.
AI-analyzed exploit summary This exploit demonstrates insecure cookie handling in Tutorial Share 3.4, allowing an attacker to bypass authentication by setting a cookie with a known username. The PoC uses JavaScript to manipulate the cookie, granting unauthorized access to the admin panel.
Description
Optimum Web Design Tutorial Share 3.5.0 and earlier allows remote attackers to bypass authentication and obtain administrative access by setting the usernamed cookie parameter.
Exploits (1)
This exploit demonstrates insecure cookie handling in Tutorial Share 3.4, allowing an attacker to bypass authentication by setting a cookie with a known username. The PoC uses JavaScript to manipulate the cookie, granting unauthorized access to the admin panel.