info: name:ETQ Reliance - Authentication Bypass author:assetnote,DhiyaneshDK severity:critical description:| An authentication bypass vulnerability exists in ETQ Reliance's login mechanism, where submitting the SYSTEM username followed by a trailing space ("SYSTEM ") allows unauthenticated users to gain full access as the SYSTEM account. This critical flaw effectively bypasses authentication controls and grants administrative-level access to the application. reference: -https://slcyber.io/assetnote-security-research-center/how-we-accidentally-discovered-a-remote-code-execution-vulnerability-in-etq-reliance/ metadata: max-request:1 shodan-query:html:"ETQ Reliance" tags:etq-reliance,auth-bypass