MrBlog PHP Script Multiple Vulnerabilities - CXSecurity.com

QQ空间 新浪微博 微信 QQ facebook twitter
漏洞ID 1799440 漏洞类型
发布时间 2019-10-27 更新时间 2019-10-27
CVE编号 N/A CNNVD-ID N/A
漏洞平台 N/A CVSS评分 N/A
|漏洞来源
https://cxsecurity.com/issue/WLB-2019100165
|漏洞详情
漏洞细节尚未披露
|漏洞EXP
[+] Mr Blog PHP Script Multiple Vulnerabilities
[+] Author : z3r0fy
[+] Twitter.com/z3r0fy

# Download Pages : 

[+] https://wmaraci.com/forum/scriptler/kisisel-mr-blog-scripti-ucretsiz-indir-500655.html  
[+] https://scriptadresim.blogspot.com/2017/05/mr-blog-mobil-uyumlu-responsive-tasarm.html
[+] https://donanimplus.com/phpscript/kisisel-mr-blog-scripti-ucretsiz-indir/


# Vulnerabilities 

[+] Vulnerability 1 - SQL Injection 

[+] Vulnerability:  http://vulnerabletarget.com/foot.php?kat=[SQL]

*********************************************************

[+] Vulnerability 2 - Cross-Site Scripting

[+] VUlnerable : http://vulnerabletarget.com/sayfa-duzenle.php?duzenle=[XSS Payload]