BloodX Authentication Bypass Vulnerability

Vulnerability

An authentication bypass vulnerability has been identified in BloodX version 1.0, specifically within the login.php file. This vulnerability allows attackers to access the dashboard without valid credentials. Exploitation involves sending a crafted payload with '=''or' parameters to bypass authentication and gain unauthorized access.

Impact

Exploitation of this vulnerability allows for unauthorized access to the dashboard, bypassing the login authentication process.

Reproduction

To reproduce this vulnerability, send a POST request to the login.php endpoint with the email and password fields crafted to include the payload '=''or'. This will bypass the authentication check and grant access to the dashboard.

Added: Feb 11, 2026, 9:56 PM
Updated: Feb 11, 2026, 9:56 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
5.0
exploitability
6.0
remediation
0.0
relevance
2.9
threat
6.4
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.