Vulnerabilities > CVE-2007-2232 - Unspecified vulnerability in Cosign

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
cosign
exploit available

Summary

The CHECK command in Cosign 2.0.1 and earlier allows remote attackers to bypass authentication requirements via CR (\r) sequences in the cosign cookie parameter.

Exploit-Db

descriptionCosign 2.0.1/2.9.4a CGI Check Cookie Command Remote Authentication Bypass Vulnerability. CVE-2007-2232. Webapps exploit for cgi platform
idEDB-ID:29842
last seen2016-02-03
modified2007-04-11
published2007-04-11
reporterJon Oberheide
sourcehttps://www.exploit-db.com/download/29842/
titleCosign 2.0.1/2.9.4a CGI Check Cookie Command Remote Authentication Bypass Vulnerability