Headline
Goati Track 1.0-2023 Insecure Settings
Gaati Track version 1.0-2023 suffers from an ignored default credential vulnerability.
Goati Track 1.0-2023 Insecure Settings
Posted Aug 12, 2024
Authored by indoushka
Gaati Track version 1.0-2023 suffers from an ignored default credential vulnerability.
tags | exploit
SHA-256 | a66751e0a18c1729e99f89ffd55d400c761bad76139bca2c36b5ffb404b06d8e
Download | Favorite | View
Goati Track 1.0-2023 Insecure Settings
=============================================================================================================================================| # Title : Gaati track v1.0-2023 Insecure Settings Vulnerability || # Author : indoushka || # Tested on : windows 10 Fr(Pro) / browser : Mozilla firefox 125.0.1 (64 bits) || # Vendor : https://www.mayurik.com/source-code/P0998/best-courier-management-system-project-in-php |=============================================================================================================================================poc :[+] Dorking İn Google Or Other Search Enggine.[+] Insecure Settings : appears to leave a default administrative account in place post installation.[+] use payload : user = [email protected] & pass = admin[+] https://www/127.0.0.1/165.232.176.122/index.php?page=homeGreetings to :==================================================jericho * Larry W. Cashdollar * LiquidWorm * Hussin-X * D4NB4R |================================================================
File Tags
- ActiveX (933)
- Advisory (86,349)
- Arbitrary (16,870)
- BBS (2,859)
- Bypass (1,861)
- CGI (1,033)
- Code Execution (7,810)
- Conference (691)
- Cracker (844)
- CSRF (3,390)
- DoS (25,071)
- Encryption (2,389)
- Exploit (53,180)
- File Inclusion (4,262)
- File Upload (994)
- Firewall (822)
- Info Disclosure (2,890)
- Intrusion Detection (915)
- Java (3,144)
- JavaScript (896)
- Kernel (7,202)
- Local (14,795)
- Magazine (586)
- Overflow (13,169)
- Perl (1,435)
- PHP (5,225)
- Proof of Concept (2,393)
- Protocol (3,724)
- Python (1,640)
- Remote (31,655)
- Root (3,635)
- Rootkit (527)
- Ruby (632)
- Scanner (1,657)
- Security Tool (8,027)
- Shell (3,273)
- Shellcode (1,217)
- Sniffer (902)
- Spoof (2,276)
- SQL Injection (16,609)
- TCP (2,441)
- Trojan (690)
- UDP (904)
- Virus (669)
- Vulnerability (32,967)
- Web (9,963)
- Whitepaper (3,782)
- x86 (967)
- XSS (18,250)
- Other
File Archives
- August 2024
- July 2024
- June 2024
- May 2024
- April 2024
- March 2024
- February 2024
- January 2024
- December 2023
- November 2023
- October 2023
- September 2023
- Older
Systems
- AIX (429)
- Apple (2,099)
- BSD (377)
- CentOS (58)
- Cisco (1,927)
- Debian (7,096)
- Fedora (1,693)
- FreeBSD (1,246)
- Gentoo (4,567)
- HPUX (880)
- iOS (378)
- iPhone (108)
- IRIX (220)
- Juniper (69)
- Linux (50,707)
- Mac OS X (691)
- Mandriva (3,105)
- NetBSD (256)
- OpenBSD (489)
- RedHat (16,485)
- Slackware (941)
- Solaris (1,611)
- SUSE (1,444)
- Ubuntu (9,737)
- UNIX (9,435)
- UnixWare (187)
- Windows (6,672)
- Other