Cybertrion Systems

[3/5] dream4 Koobi Forum Security Bypass

February 29th, 2008 by
[3/5] dream4 Koobi Forum Security Bypass

:A vulnerability has been reported in Koobi, which can be exploited by malicious people to bypass certain security restrictions.The problem is that it is possible to post or reply to an article without having proper credentials by sending a specially crafted request.The vulnerability is reported in version 6.25.Solution:Apply the Fixpack for 6.25.http://dream4.de/sicherheitsupdate_verfuegbar-112.htmProvided and/or discovered by:Reported by the vendor.Original Advisory:http://dream4.de/sicherheitsupdate_verfuegbar-112.htm

Original post by nitish

[3/5] dream4 Koobi Forum Security Bypass

Related Articles:
  • [3/5] Koobi “poll_id” SQL Injection Vulnerability
  • [2/5] Animal Shelter Manager Multiple Security Bypass Vulnerabilities
  • [3/5] Serendipity Extended Properties For Entries Security Bypass
  • [3/5] ADempiere Bazaar WebUI Authentication Bypass Vulnerability
  • [4/5] FileCloset File Upload Vulnerability


  • Posted in Advisories - Exploits | | [3/5] dream4 Koobi Forum Security Bypass

    << [2/5] XRMS CRM “msg” Cross Site Scripting Vulnerability | [3/5] NetBSD FAST_IPSEC “ipsec4_get_ulp()” Security Bypass >>