BugTraq
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
mAlbum v0.3 admin by default user/pass Feb 17 2007 12:24PM
sn0oPy team gmail com
* mAlbum v0.3
admin by default user/pass

* By : sn0oPy

* Risk : high

* exploit :

at http://www.target.ma/malbum/index.php (when private images)

Login : login
Password : pass

after login, you can creat new admin account, delete it,...

Dork :

inurl:"malbum/"

* Default user/pass present her...

[ more ]  
 

Privacy Statement
Copyright 2010, SecurityFocus