Date: 21 Feb 2025


  1. click on oswasp mutiidae II
    attachments/Pasted image 20250309114448.png

  2. owasp 2013->A1-injection(other)->sqli-bypass authentication -> login
    attachments/Pasted image 20250309114500.png

  3. put a ' in the username and login
    attachments/Pasted image 20250309114519.png

  4. the following error will show us (scroll up):
    attachments/Pasted image 20250309114535.png

  5. then in login sign up :
    attachments/Pasted image 20250309114553.png
    you can see it is bypassed
    o/p is shown below
    attachments/Pasted image 20250309114633.png

  6. now hit the webiste

  1. now keep the username genuine and password try to bypass in Website
  1. now give username : jsmith ‘ or 1=1 --(space) in Website
  1. username = jsmith' AND 1=1 -- || passwd: anything
    attachments/Pasted image 20250309114822.png

---****---