Exploit 4Site CMS 2.6 - 'cat' SQL Injection

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
34883
Проверка EDB
  1. Пройдено
Автор
HIGH-TECH BRIDGE SA
Тип уязвимости
WEBAPPS
Платформа
PHP
CVE
cve-2010-4152
Дата публикации
2010-10-19
4Site CMS 2.6 - 'cat' SQL Injection
Код:
source: https://www.securityfocus.com/bid/44258/info

4Site CMS is prone to an SQL-injection vulnerability.

An attacker can exploit this issue to carry out unauthorized actions on the underlying database which may compromise the application and may aid in further attacks.

4Site CMS 2.6 is vulnerable; other versions may also be affected.

http://www.example.com/catalog/index.shtml?cat=-1+UNION+SELECT+@@version
 
Источник
www.exploit-db.com

Похожие темы