Headline
Foloosi Shopping 5.5.7 Insecure Settings
Foloosi Shopping version 5.5.7 appears to leave a default administrative account in place post installation.
====================================================================================================================================| # Title : Foloosi Shopping v5.5.7 Insecure Settings Vulnerability || # Author : indoushka || # Tested on : windows 10 Français V.(Pro) / browser : Mozilla firefox 108.0(64-bit) | | # Vendor : https://www.foloosishopping.com/ | | # Dork : "category/beauty-health-hair" |====================================================================================================================================poc :[+] The vulnerability is about leaving the default settings During the installation of the script and using the default username and password [+] Dorking İn Google Or Other Search Enggine.[+] Use Payload : [email protected] & pass=123456 [+] https://127.0.0.1/loginGreetings to :========================================================================================================================= |jericho * Larry W. Cashdollar * brutelogic* hyp3rlinx* 9aylas * shadow_00715 * LiquidWorm* moncet | |=======================================================================================================================================