Espejo Design SQL Injection

QQ空间 新浪微博 微信 QQ facebook twitter
漏洞ID 1047277 漏洞类型
发布时间 2012-06-12 更新时间 2012-06-12
CVE编号 N/A CNNVD-ID N/A
漏洞平台 N/A CVSS评分 N/A
|漏洞来源
https://cxsecurity.com/issue/WLB-2012060123
|漏洞详情
漏洞细节尚未披露
|漏洞EXP
==> ABOUT ME:
--- TAURUS OMAR
--- INDEPENDENT SECURITY RESEARCHER
--- ACCESOILEGAL.BLOGSPOT.COM
--- @omartaurus
--- omar-taurus[at]dragonsecurity[dot]org 
--- omar-taurus[at]live[dot]com
 
===> INFO:
Author        : TAURUS OMAR
Category      : Webapps / 0day 
Title Exploit : Espejo Design - SQL Injection Vulnerability 
Vendor        : Espejo Design
URL Vendor    : http://www.elespejodesign.com.ar/
Google Dork   : intext:"EL Espejo Design"  


==> SAMPLE'S SQLi:
http://www.consxoriochivilcoy.com/sitio/detalle.php?id=203 [SQL Injection]
http://www.alberdifxlsol.com.ar/sitio/detalle.php?id=283  [SQL Injection]
http://www.asocruxchivilcoy.com.ar/Sitio/detalle.php?id=183  [SQL Injection]
http://www.ejbtxrteria.com/Sitio/detalle.php?id=131  [SQL Injection]
http://www.ocavxri.com.ar/Sitio/detalle.php?id=313  [SQL Injection]
http://www.agrxcsrl.com.ar/Sitio/detalle.php?id=128  [SQL Injection]


MORE IN GOOGLE..