Page 1 of 1

Can't reproduce vulnerability

Posted: Fri Sep 08, 2023 4:36 am
by chintandesai
Please recheck the report number 3632899 and 3632876 for Improper access control. I've added the production steps in the comment box of the report. The vulnerability is easy to reproduce.

Putting below payload in username and password will bypass the authentication for both of the reports.
0' OR '0'='0

Re: Can't reproduce vulnerability

Posted: Wed Dec 06, 2023 3:14 pm
by pentesterhacked001
haha they reject same, always happening with me too on this.

Re: Can't reproduce vulnerability

Posted: Mon Feb 26, 2024 7:18 am
by x1admin
we don't accept sql injections, read rules

Re: Can't reproduce vulnerability

Posted: Mon Apr 15, 2024 12:31 am
by salmawisoky
This is frustrating and not nice at all! Always happening with me too on this. Drift Boss