This is a writeup describing a blind SQL injection vulnerability in Pub-Me CMS. The vulnerability allows an attacker to bypass authentication by injecting SQL code into the login form.
Classification
Writeup 90%
Attack Type
Sqli
Complexity
Trivial
Reliability
Reliable
Target:Pub-Me CMS (unknown versions)
No auth needed
Prerequisites:Access to the login page of a Pub-Me CMS instance