Designscope SQL Injection Vulnerability

2011.03.24
Credit: Net.Edit0r
Risk: Medium
Local: No
Remote: Yes
CVE: N/A
CWE: CWE-89

[~] Title : Designscope SQL Injection Vulnerability [~] Author : Net.Edit0r [~] Email : Net.Edit0r@Att.net ~ Black.Hat.TM@Gmail.com [~] Location : Iran [~] Dork : "site by Designscope" [~] Category : webapps [~] Data : 2011-03-22 [~] Version: All Version 3.0 [~] Software Link: www.designscope.com.au [~] Platform :linux/php ############################################################## [~] 1. Vulnerable File : http://127.0.0.1/general.php?pageID=[SQL] [~] 2. Vulnerable File : http://127.0.0.1/content.php?pageID=[SQL] [~] 3. Demo : http://www.pinarc.org.au/general.php?pageID=[SQL] http://www.designscope.com.au/content.php?pageID=[SQL] http://www.fertileground.com.au/general1.php?pageURL=[SQL] http://www.ourneighbourhood.org.au/general.php?pageID=[SQL] http://www.lawcastles.com/general.php?category=[SQL] ############################################################## [~] Special Thanks To My Best FriendS : DarkCoder ~ HUrr!c4nE ~ B3hz4d ~ H-Sp00ky ~ Cair3x ~ M4hd1 ~ S3cR3T ~Mikili ~ Ali.Er00r [~] IRANIAN Young HackerZ [~] GreetZ : Ajaxtm.com ~ #BHG ##############################################################


Vote for this issue:
50%
50%


 

Thanks for you vote!


 

Thanks for you comment!
Your message is in quarantine 48 hours.

Comment it here.


(*) - required fields.  
{{ x.nick }} | Date: {{ x.ux * 1000 | date:'yyyy-MM-dd' }} {{ x.ux * 1000 | date:'HH:mm' }} CET+1
{{ x.comment }}

Copyright 2024, cxsecurity.com

 

Back to Top