CVE-2020-21991
CRITICALAVE DOMINAplus <= 1.10.x - Unauthenticated Authentication Bypass via changeparams.php autologin Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2020-21991. PoCs published by LiquidWorm.
AI-analyzed exploit summary The exploit demonstrates an authentication bypass vulnerability in AVE DOMINAplus by directly calling the 'autologin' GET parameter in the 'changeparams.php' script. Setting 'autologin=1' allows unauthenticated access to the management interface with admin privileges.
Description
AVE DOMINAplus <=1.10.x suffers from an authentication bypass vulnerability due to missing control check when directly calling the autologin GET parameter in changeparams.php script. Setting the autologin value to 1 allows an unauthenticated attacker to permanently disable the authentication security control and access the management interface with admin privileges without providing credentials.
Exploits (1)
The exploit demonstrates an authentication bypass vulnerability in AVE DOMINAplus by directly calling the 'autologin' GET parameter in the 'changeparams.php' script. Setting 'autologin=1' allows unauthenticated access to the management interface with admin privileges.
References (2)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H