[] NeoSense

Simple Customer 1.2 - Authentication Bypass

Author: d3b4g
type: webapps
platform: php
port: 
date_added: 2008-11-16 
date_updated: 2017-01-03 
verified: 1 
codes: OSVDB-49916;CVE-2008-6332;CVE-2008-6326 
tags: 
aliases:  
screenshot_url:  
application_url: http://www.exploit-db.comsimple-customer.zip

###############################################################################################
[-] Simple Customer  1.2 Remort (Auth bypass) SQL Injection Vulnerability
[-] Discovered By : d3b4g
[-] Greetz : All my freind
################################################################################################
 Go to www.target.com[path]login.php

 Use following information to bypass login.

 Write any email Address as email address.It must to be in email format like somethin@something.com

 For exapmple letmein@inbox.com

 For password use ' or ' 1=1

  Live demo [at] http://www.simplecustomer.com/demo/login.php
--------------------------------------------
--------------------------------------------

# milw0rm.com [2008-11-17]