jardcs - sql injection

2020.05.02
Risk: Medium
Local: No
Remote: Yes
CVE: CWE-89
CWE: N/A

* Exploit Title: jardcs - sql injection * Google Dork: intext:"© JARDCS 2020 All right reserved" * Date: 2020.05.01 * Exploit Author: RMX TEAM * Vendor Homepage: https://www.jardcs.org/ * Software Link: https://www.jardcs.org/ * Category : webapps * Version: 1.0 * Tested on: windows 10 , firefox * CVE : CWE-89 ********************************************************* proof of concept : * * Sql Injection Vulnerability * 1-search google Dork:"© JARDCS 2020 All right reserved"* 2-sql injection * ********************************************************* * Demo: * https://www.jardcs.org/abstract.php?id=23 * Add Single quotation ' to the last link ### Special Thanks: * Mr.h0ly,Mr.mad,Milad Karimi,iman_ach,M4mad_turk,M4mad_wxa ********************************************************* * Discovered By Milad Karimi & Mr.h0ly * *********************************************************


Vote for this issue:
50%
50%


 

Thanks for you vote!


 

Thanks for you comment!
Your message is in quarantine 48 hours.

Comment it here.


(*) - required fields.  
{{ x.nick }} | Date: {{ x.ux * 1000 | date:'yyyy-MM-dd' }} {{ x.ux * 1000 | date:'HH:mm' }} CET+1
{{ x.comment }}

Copyright 2020, cxsecurity.com

 

Back to Top