Oct 26, 2013

WHMCS v5.2.10 Vulnerability


  • Login as a client.
  • Start your quest at /clientarea.php?action=masspay&invoiceids[]=1&invoiceids[]=2
This will allow you to access any invoice, even if you don't own it.

Source: http://localhost.re/p/whmcs-v5210-vulnerability


If you like my blog, Please Donate Me
Or Click The Banner For Support Me.
 

Sponsors

lusovps.com

Blogroll

About

 Please subscribe my blog.

 Old Subscribe

Share |