[-]Lanius CMS 0.5.1 CSRF vulnerability [-]exploit found by d14l and marcoj [-]greetz to soul,stefo,sp1r1t,invisible,kisobran and others [-] lanius CMS suffers from csrf vulnerabilities which allows attacker change admins password it is only important to change in source [site],[path] and [id] of victim and it will change victims password to "code" //////////////////////////////////////////////////CODE///////////////////////////////////////////////////////////////////////////
Information about the latest version available, click to start the automatic update wizard
Home page Edit User Permanent link to this page
Edit User
Edit User 
  
* Display name
* Username
* Email
Language
User timezone
Users Group
 
Leave the password field empty to preserve the previous password
Password
Password confirmation
 



Avatar

Forum user statistics

Posts: 1
Member since 09 February 2009 19:10

Forum user information

Location:
Website:
  Web Address Email Address Bold Text Italic Text Underlined Text Quote Code
User provided information (max 1024 characters)
  Web Address Email Address Bold Text Italic Text Underlined Text Quote Code
Custom signature (max 300 characters)

////////////////////////////////////////////end of code////////////////////////////////////////////////