cookie_gen.php in ar web content manager (AWCM) 2.2 does not require authentication, which allows remote attackers to generate arbitrary cookies via the name parameter in conjunction with the content parameter.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2012-11-26T11:00:00
Updated: 2017-08-28T12:57:01
Reserved: 2012-04-27T00:00:00
Link: CVE-2012-2437
JSON object: View
NVD Information
Status : Modified
Published: 2012-11-26T12:45:22.127
Modified: 2017-08-29T01:31:37.057
Link: CVE-2012-2437
JSON object: View
Redhat Information
No data.
CWE