[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

dreamsoft SQL Injection Vulnerability

Author
cyberlog
Risk
[
Security Risk High
]
0day-ID
0day-ID-13631
Category
web applications
Date add
09-08-2010
Platform
php
=====================================
dreamsoft SQL Injection Vulnerability
=====================================


Special to adhan a.k.a Cr4wL3R --- Dont Talk : My Last Exploit, I dont Like !!! :(, 
We all, Big Family H4ckb0x Organization  miss u broth@


__                  __             
.----..--.--.|  |--..-----..----.|  |.-----..-----.
|  __||  |  ||  _  ||  -__||   _||  ||  _  ||  _  |
|____||___  ||_____||_____||__|  |__||_____||___  |
|_____|                               |_____|

####################################################

#  dreamsoft SQL Injection Vulnerability

####################################################
# Vendor	: http://www.dreamsoft.us/
# prices	: Not Yet:P
# Discovered by : cyberlog
# Site          : Sekuritionline.net
# Channel       : #SekuritiOnline  & #Bajingan [ Now Just My Bot ]

# Dork          : "gallery.php?id= "Powered by DreamSoft" or U can modification :P


# Exploit       : 

[site]/gallery.php?id= [SQL Injection]

[site]/practice.php?id= [SQL Injection]

[site]/category.php?cat=[number] + [sqli}

[site]/iategory.php?cat=[number] + [sqli]

[site]/product_list.php?cat=[number] + [sqli]
		  

# Thanks        : GOD,r0073r,adhietslank, k1n9k0ng, cr4wl3r,cah_gemblunkz,
jayoes,thesims,setiawan,irvian,EA_Angel,BlueSpy,SoEy,A-technique,Jantap,KiLL,blindboy,sukam,
SarifJedul,wiro_gendenk,Letjen,ridho_bugs,Ryan_Kabrutz,aurel666,Inof,dbanie, GuA_NinOx, ant0_h@ck, marlon_inside

# special to Mama Sri Rahayu, Member& Staff Sekuritonline,H4ckb0x,JatimCr3w,ManadoCoding Friends, Bajingan Crew,
# C0li a.k.a antisecurity [ pinjem script perl-na ] 
# Hiroyuki Doni thanks to create New design SO T-shirt P
# Inj3ct0r Now Brothers with Sekuritionline


####################################################
# Demo:

# http://localhost/gallery.php?id= [SQL Injection]


####################################################

demolive:
http://www.frcphotos.com/gallery.php?id=194
http://logganslaw.com/practice.php?id=8

We never die !!!! indonesian Underground Community
!!!!! anjing buat oknum Pemerintah yang suka nilep uang rakyat !!!
!!!!! anjing juga buat admin site indon3sia yang merasa sok h3bat, dikasih tahu ada hole malah nyolot !!!!!
Give me NOCAN Brothers
am nt hacker just Lik3 Syst3m S3curity
###################################################################################################################
Segenap Crew SekuritiOnline, H4ckb0x, Bajingan, jatimcr3w,manadocoding, mengucapkan selamat menempuh puasa dibulan yang penuh suci ini !!!
Mari TADARUSAN, Berzikir, Dsb :P !!!!!
#####################################################################################################################

.-----..-----.|  |--..--.--..----.|__||  |_ |__|.-----..-----.|  ||__|.-----..-----.
|__ --||  -__||    < |  |  ||   _||  ||   _||  ||  _  ||     ||  ||  ||     ||  -__|
|_____||_____||__|__||_____||__|  |__||____||__||_____||__|__||__||__||__|__||_____|



#  0day.today [2024-09-29]  #