Back to search
CVE-2008-6966
Published: Aug 13, 2009
Modified: Aug 7, 2024
PUBLISHED
Description
AJ Square AJ Auction Pro Platinum Skin #1 sends a redirect but does not exit when it is called directly, which allows remote attackers to bypass authentication via a direct request to admin/user.php.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
ajauction-admin-authentication-bypass(46528)
vdb-entry
x_refsource_XF
7087
exploit
x_refsource_EXPLOIT-DB
32243
vdb-entry
x_refsource_BID
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now