CVE-2014-9611
CRITICALnetsweeper < 4.0.4 - Unauthenticated Authentication Bypass via webadmin/nslam/index.php
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2014-9611. PoCs published by Anastasios Monachos.
AI-analyzed exploit summary This is a writeup describing an authentication bypass vulnerability in Netsweeper 3.0.6, allowing unauthenticated users to create new accounts and policies via a crafted URL. The exploit details are provided, but no executable code is included.
Description
Netsweeper before 4.0.5 allows remote attackers to bypass authentication and create arbitrary accounts and policies via a request to webadmin/nslam/index.php.
Exploits (1)
This is a writeup describing an authentication bypass vulnerability in Netsweeper 3.0.6, allowing unauthenticated users to create new accounts and policies via a crafted URL. The exploit details are provided, but no executable code is included.
References (2)
Scores
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H