[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

HAVECMS 2.0 Beta <= SQL Injection Vulnerability

Author
Aurel 666
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-12875
Category
web applications
Date add
22-06-2010
Platform
php
===============================================
HAVECMS 2.0 Beta <= SQL Injection Vulnerability
===============================================


Author: Aurel 666
Exploit Title: SQL Injection
Vendor url:http://havecms.jember.info/ (Indonesia)
Version:2.0 Beta Tested
Category : Web Apps
Greetz to:Cyberlog,Ridho_Dbug,BlueKids,Cruz3n,T0m,T0mahawk aki2 Embeker (All Wedhus), fl3xus, Eva-00, and All My Friend in CyberWorld
Special Greetz: Jasakom, Echo, XYB, Security Online, Indobacktrack, And All Indonesian Security Community
*~*~~*~*~*~*~*~*~*~*~*~*~~*~*~*~*~*~*~~*~*~*~*~*~*~~*~*~*~*~*~*~~*~*~*~*~*~*~~*~*~*~*~*~*~~*~*~*~*~*~*~~*~*~*~*~*~*~

Vulnerability:
Demo URL : http://localhost/?mod=2&q=(SQL)


*~*~~*~*~*~*~*~*~*~*~*~*~~*~*~*~*~*~**~*~~*~*~*~*~*~*~*~*~*~*~~*~*~*~*~*~**~*~~*~*~*~*~*~*~*~*~*~~*~*~*~*~*~*~*~*~*~*

#end



#  0day.today [2024-12-26]  #