========================================================================
| # Title : SIMHL Version 3.2 sql injection vulnerability
| # Author : indoushka
| # email : indoushka4ever@gmail.com
| # Tested on : windows 10 Fr
| # Version : Version 3.2
| # Vendor : http://www.simhl.net/
| # Dork : "Site powered by SIMHL.net and Simon T Hockey Simulator | Version 3.2"
========================================================================
poc :
http://www.nhlchallenge.se/nhl/game_preview.php?id=18411 ( inject her )
admin panel :
http://www.nhlchallenge.se/nhl/login.php
Greetz : ===============================================================
|
jericho * Larry W. Cashdollar * shadow00715 * Gjoko Krstic |
|
========================================================================