Supercon - No Redirect Login Admin

2018.04.19
Risk: Medium
Local: No
Remote: Yes
CVE: N/A
CWE: N/A

# Exploit Title: Supercon - No Redirect Login Admin # Google Dork: intext:Developed By:Supercon Infoservices Pvt.Ltd. # Date: 2018 April 18 # Exploit Author: Mr.xBarakuda # Vendor Homepage: http://www.superconinfo.com/ # Tested on: Linux #PoC -Before, you have installed no-redirect tools in your browser -Use the dork above -allow exploit /webadmin/login.php -then, copy the link and add it to your no-redirect tools -Then back to the link - then replace /login.php to /index.php And BOOM! #Demo: http://hebermiok.com/webadmin/login.php http://www.viewoptics.in/webadmin/login.php


Vote for this issue:
9%
91%


 

Thanks for you vote!


 

Thanks for you comment!
Your message is in quarantine 48 hours.

Comment it here.


(*) - required fields.  
{{ x.nick }} | Date: {{ x.ux * 1000 | date:'yyyy-MM-dd' }} {{ x.ux * 1000 | date:'HH:mm' }} CET+1
{{ x.comment }}

Copyright 2024, cxsecurity.com

 

Back to Top