Bus Pass Management System 1.0 Insecure Settings

Bus Pass Management System 1.0 Insecure Settings
Posted Sep 13, 2024
Authored by indoushka

Bus Pass Management System version 1.0 suffers from an ignored default credential vulnerability.

tags | exploit
SHA-256 | 94ddc658a9d1db8843a49a609fff1b631cea4c20eebd8367f5852db5d0effe60
====================================================================================================================================
| # Title : Bus Pass Management System 1.0 Insecure Settings Vulnerability |
| # Author : indoushka |
| # Tested on : windows 10 Fr(Pro) / browser : Mozilla firefox 130.0.0 (64 bits) |
| # Vendor : https://phpgurukul.com/bus-pass-management-system-using-php-and-mysql/ |
====================================================================================================================================

poc :

[+] Dorking İn Google Or Other Search Enggine.

[+] Insecure Settings : appears to leave a default administrative account in place post installation.

[+] use payload :

Username: admin

Password: Test@123

[+] http://127.0.0.1/buspassms/admin/dashboard.php

Greetings to :==================================================
jericho * Larry W. Cashdollar * LiquidWorm * Hussin-X * D4NB4R |
================================================================

نوشته های مشابه