CVE-2016-15002

A vulnerability, which was classified as critical, was found in MONyog Ultimate 6.63. This affects an unknown part of the component Cookie Handler. The manipulation of the argument HasServerEdit/IsAdmin leads to privilege escalation. It is possible to initiate the attack remotely.
References
Link Resource
https://youtu.be/KKlwi-u6wyA Exploit Third Party Advisory
https://vuldb.com/?id.98355 Third Party Advisory
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:ideracorp:webyog_monyog_ultimate:6.63:*:*:*:*:*:*:*

Information

Published : 2022-06-09 10:15

Updated : 2022-06-15 11:23


NVD link : CVE-2016-15002

Mitre link : CVE-2016-15002


JSON object : View

CWE
CWE-565

Reliance on Cookies without Validation and Integrity Checking

Advertisement

dedicated server usa

Products Affected

ideracorp

  • webyog_monyog_ultimate