Share
## https://sploitus.com/exploit?id=PACKETSTORM:172932
====================================================================================================================================  
| # Title : Rest-Cafe and Restaurant Website CMS 2.0.0 Insecure Settings Vulnerability |  
| # Author : indoushka |  
| # Tested on : windows 10 Français V.(Pro) / browser : Mozilla firefox 67.0.2(64-bit) |   
| # Vendor : https://codecanyon.net/item/rest-cafe-and-restaurant-website-cms/21630154 |   
| # Dork : "news.php?slug=" |  
====================================================================================================================================  
  
poc :  
  
[+] leaves a default set of administrative credentials installed post installation.  
  
[+] Dorking İn Google Or Other Search Enggine.  
  
[+] Use Payload :Login  
  
Super Admin  
  
Username: sadmin@gmail.com  
  
Password: 1234  
  
Admin  
  
Username: admin@gmail.com  
  
Password: 1234   
  
[+] https://127.0.0.1/nominomidelight.com/admin/visual_settings  
  
  
Greetings to :=========================================================================================================================  
|  
jericho * Larry W. Cashdollar * brutelogic* hyp3rlinx* 9aylas * shadow_00715 * LiquidWorm* |   
|  
=======================================================================================================================================