18 Aralık 2010 Cumartesi

Shift E-Business - Blind SQL Injection Vulnerabilities

~~~~~~~~~~~~~~~[My]~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
[+] Author : KnocKout
[~] Contact : knockoutr@msn.com
[~] HomePage : http://h4x0resec.blogspot.com
[~] Reference : http://h4x0resec.blogspot.com
[~] Special Thanks : DaiMon,BARCOD3 and H4X0RE SECURITY
############################################################
fuck exploit(lamer)-DB.com Noobs..
Kralınız gelsin. mua:) siksqlZkırev..
############################################################
~~~~~~~~~~~~~~~~[Software info]~~~~~~~~~~~~~~~~~~~~~~~~~~~~
|~Web App. : Shift E-Business
|~Price : N/A
|~Version : N/A
|~Software: http://www.be-capital.com/
|~Vulnerability Style : SQL Injection
|~Vulnerability Dir : /
|~sqL : MysqL 
|~Google Keyword : N/A
|[~]Date : "19.12.2010"
|[~]Tested on : (L):Vista (R):Apache mod_fcgid/2.3.5 mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635
~~~~~~~~~~~~~~~~[~]~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Demos: 
http://www.cna.mercedes-benz.com.eg
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    ===============================================================
    |{~~~~~~~~ Explotation| 212.php SQL Injection~~~~~~~~~~~}|
    
    http://$Site/$path/212.php?id=1 {blind SQL Injection}

     
    Ex; http://www.cna.mercedes-benz.com.eg
    
    [~] SQL Injecting
    http://www.cna.mercedes-benz.com.eg/212.php?id=1 (Blind SQL.
    http://www.cna.mercedes-benz.com.eg/MB_care.php?id=1 (Blind SQL.
    [~] MySQL : TRUE
    
    To your continue..

Hiç yorum yok:

Yorum Gönder