Etomite CMS SQL Injection

2013.05.23
Risk: Medium
Local: Yes
Remote: Yes
CVE: N/A
CWE: CWE-89

############## # Exploit Title : Etomite CMS SQL Injection # # Exploit Author : Ashiyane Digital Security Team # # CMS Home : http://www.bmby.com/ # # Security Risk : Medium # # Dork : intext:Powered by Real Estate Israel BMBY # # Tested on: Linux # ############## #Location:site/[path]/search.php?opr=realtor&id=[SQL] # # #DEm0: # http://www.X/english/search.php?opr=realtor&id=1 # # http://www.X/english/search.php?opr=realtor&id=1 # ############## #Greetz to: My Lord ALLAH ############## # # BeBo Hacker # ##############

References:

http://www.bmby.com/


Vote for this issue:
50%
50%


 

Thanks for you vote!


 

Thanks for you comment!
Your message is in quarantine 48 hours.

Comment it here.


(*) - required fields.  
{{ x.nick }} | Date: {{ x.ux * 1000 | date:'yyyy-MM-dd' }} {{ x.ux * 1000 | date:'HH:mm' }} CET+1
{{ x.comment }}

Copyright 2024, cxsecurity.com

 

Back to Top