Exploitation Summary
EIP tracks 1 public exploit for CVE-2020-8510. PoCs published by 0xEmma.
AI-analyzed exploit summary The repository describes an authentication bypass vulnerability in phpABook 0.9i, where setting a specific cookie allows unauthorized admin access. The technical details include the cookie format and its exploitation mechanism.
Description
An issue was discovered in phpABook 0.9 Intermediate. On the login page, if one sets a userInfo cookie with the value of admin+1+en (user+perms+lang), one can login as any user without a password.
Exploits (1)
The repository describes an authentication bypass vulnerability in phpABook 0.9i, where setting a specific cookie allows unauthorized admin access. The technical details include the cookie format and its exploitation mechanism.
References (2)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H