EIP-2026-109605
PRE-CVEMRCGIGUY Amazon Directory 1.0/2.0 - Insecure Cookie Handling
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-109605. PoCs published by TiGeR-Dz.
AI-analyzed exploit summary This exploit demonstrates an insecure cookie handling vulnerability in Amazon Directory Version 1.0/2.0, allowing an attacker to bypass authentication by setting a cookie via JavaScript. The PoC is a simple one-liner that sets the 'amazonadmin' cookie to 'logged in', granting unauthorized access to the admin interface.
Description
MRCGIGUY Amazon Directory 1.0/2.0 - Insecure Cookie Handling
Exploits (1)
This exploit demonstrates an insecure cookie handling vulnerability in Amazon Directory Version 1.0/2.0, allowing an attacker to bypass authentication by setting a cookie via JavaScript. The PoC is a simple one-liner that sets the 'amazonadmin' cookie to 'logged in', granting unauthorized access to the admin interface.