MediaLab SQL Injection

2012.09.14
Credit: Samim.s
Risk: Medium
Local: No
Remote: Yes
CVE: N/A
CWE: CWE-89

================================ # [~] Exploit Title: MediaLab SQL Injection Bug # # [~] Google Dork : inurl:"view-folder.php?fid=" # # [~] Date: 09/13/2012 (TH) # # [~] Exploit Author: Samim.s # # [~] Version: ALL Versions # # [~] Tested on: Se7en & BT5 # # [~] Support WebSite : MediaLab.com # ================================ # [+] RFU Exploit : # # http://WebSite.Com/[path]/contents/view-folder.php?fid=[SQLi] # # [+] Demo : # # http://davbhilai.org/contents/view-folder.php?fid=7 # # [+] Admin Panel Address : # # http://WebSite.Com/[path]/admin/ # ================================ # [*] GreetZ To: MrMosiHacker - Mr.XpR - UnknowN - Mr.EBI - SaMaN.BiLiZ & Iranian HaCkerZ # ================================

References:

http://dXXXXXrg/contents/view-folder.php?fid=7


Vote for this issue:
50%
50%


 

Thanks for you vote!


 

Thanks for you comment!
Your message is in quarantine 48 hours.

Comment it here.


(*) - required fields.  
{{ x.nick }} | Date: {{ x.ux * 1000 | date:'yyyy-MM-dd' }} {{ x.ux * 1000 | date:'HH:mm' }} CET+1
{{ x.comment }}

Copyright 2024, cxsecurity.com

 

Back to Top