Post

Netmizer Log Management System Main Html Login Bypass Vulnerability

Netmizer Log Management System Main Html Login Bypass Vulnerability

NetMizer log management system main.html login bypass vulnerability

Vulnerability Description

The NetMizer log management system has a login bypass vulnerability, which obtains background permissions by restricting the sending of a request packet.

Vulnerability Impact

NetMizer log management system

Network surveying and mapping

Vulnerability reappears

Login page

img

Visit the main.html page and grab the request package, use Burp Drop to drop the following request package

img

Stop catching packets after Drop and successfully enter the background

img

This post is licensed under CC BY 4.0 by the author.