WebsiteBaker version 2.8.1 suffers from a cross site request forgery vulnerability.
59d689d83565d8699a13922e5705bd8960fdd8caf29937ba18f079343afc3bd9
# Exploit Title: WebsiteBaker 2.8.1 CSRF
# Date: 05/18/10
# Author: Luis Santana
# Software Link:
http://www.websitebaker2.org/modules/download_gallery/dlc.php?file=88&id=1269641667
# Version: 2.8.1
# Tested on: All
# CVE : N/A
# Code : http://hacktalk.net/exploits/websitebakercsrfPOC.zip
The full advisory can be found at
http://hacktalk.net/exploits/websitebakerCSRF.txt
Regards,
Luis Santana
Admin - http://hacktalk.net
HackTalk Security