PoC Index

CVE-2012-2437

MEDIUM 5.0EPSS 2.4%

cookie_gen.php in ar web content manager (AWCM) 2.2 does not require authentication, which allows remote attackers to generate arbitrary cookies via the name parameter in conjunction with the content parameter.

CVSS v2.0
5.0 MEDIUMAV:N/AC:L/Au:N/C:N/I:P/A:N
EPSS
2.43% chance of exploitation in the next 30 days, 83th percentile
Published
2012-11-26
Updated
2024-08-06

ExploitDB entries (1)

References

Related