Logo

Million Dollar Text Links Vulnerability

March 3rd, 2009 in Security

Next up is Million Dollar Text Links which is a link exchange application. No authentication checks on the admin home page allows anyone to just browse to the admin contol panel and bypass the login procedure. This will allow full access to the admin panel.

Proof of Concept:

http://sitename[applicationpath]/admin.home.php

Vendor was contacted twice over a 30 day period and didn’t not respond to any of the emails.

The full advisory can be found Here.

← Arcade Script Vulnerability
PHP SiteLock Vulnerability →

Leave a Reply

  • Menu

    • Home
    • Security Advisories
    • Projects
    • Scripts
    • Docs
  • Tools

    • domRecon
  • Categories

    • Linux (3)
    • Networking (1)
    • Programming (1)
    • Security (5)

Jayscott.co.uk © 2010
Process in 27 queries. 0.392 seconds.