WHMCS v5.2.14 Vulnerability


SUBMITTED BY: Guest

DATE: Feb. 1, 2014, 12:28 a.m.

FORMAT: PHP

SIZE: 683 Bytes

HITS: 846

  1. I decided to give WHMCS a chance to patch this. The first part of this vulnerability:
  2. Login as a client.
  3. Start your quest at /clientarea.php?action=masspay&invoiceids[]=1&invoiceids[]=2
  4. This will allow you to access any invoice, even if you don't own it.
  5. If you've got what it takes, you'll find out how to exploit this further and get some real database access.
  6. Ternyata hint ada d sini sebenarnya ->
  7. PHP Code:
  8. <input type="hidden" name="geninvoice" value="true" />
  9. Have fun!
  10. Dork : powered by whmcompletesolution inurl:clientarea.php?action=masspay
  11. Selamat ya.
  12. View Source
  13. Regards ,
  14. AeonHack

comments powered by Disqus