CVE-2015-8368 Information
Feb 14, 2021
cve
Description
ntopng (aka ntop) before 2.2 allows remote authenticated users to change the login context and gain privileges via the user cookie and username parameter to admin/password_reset.lua.
Reference
http://packetstormsecurity.com/files/134593/ntop-ng-2.0.15102-Privilege-Escalation.html http://seclists.org/fulldisclosure/2015/Dec/10 https://www.exploit-db.com/exploits/38836/
Share on: