ID

VAR-E-201707-0291


TITLE

Friends in War Make or Break 1.7 - Authentication Bypass Vulnerability

Trust: 0.6

sources: EDBNET: 93598

AFFECTED PRODUCTS

vendor:friendsmodel:in war make or breakscope:eqversion:1.7

Trust: 0.6

sources: EDBNET: 93598

EXPLOIT

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
[x] Type: Admin login bypass via SQLi
[x] Vendor: http://software.friendsinwar.com/
[x] Script Name: Make or Break
[x] Script Version: 1.7
[x] Script DL: http://software.friendsinwar.com/downloads.php?cat_id=2&file_id=9
[x] Author: Anarchy Angel
[x] More info: https://aahideaway.blogspot.com/
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Navigate to scripts admin login page and submit admin' or ''='-- for username
and it should give you access to the admin area. A quick release to
kick off DefCon festivities. See you there! Enjoy >:)

Trust: 0.6

sources: EDBNET: 93598

PRICE

free

Trust: 0.6

sources: EDBNET: 93598

TYPE

Authentication Bypass Vulnerability

Trust: 0.6

sources: EDBNET: 93598

EXTERNAL IDS

db:0DAYTODAYid:28193

Trust: 0.6

db:EDBNETid:93598

Trust: 0.6

sources: EDBNET: 93598

REFERENCES

url:https://0day.today/exploits/28193

Trust: 0.6

sources: EDBNET: 93598

SOURCES

db:EDBNETid:93598

LAST UPDATE DATE

2022-07-27T10:00:38.910000+00:00


SOURCES RELEASE DATE

db:EDBNETid:93598date:2017-07-27T00:00:00