Jump to content
trxtxx

Ulisse’s Scripts 2.6.1

Recommended Posts

Posted

# Exploit Title: Ulisse’s Scripts 2.6.1 ladder.php SQL Injection Vulnerability

# Date: January 6th, 2010

# Author: Sora

# Version: 2.6.1

# Tested on: Windows Vista Home Premium and Linux 2.6.28.1 (Backtrack 3)

——————————

> Ulisse’s Scripts 2.6.1 ladder.php SQL Injection Vulnerability

> Author: Sora

> Contact: vhr95zw [at] hotmail [dot] com

> Website: Grey Hat Hackers

> Google Dork: “In your dreams, script kiddies.”

# VULNERABILITY DESCRIPTION:

Type: SQL Injection

Level: 4/5 (CRITICAL)

Sora has advised that Ulisse’s ladder.php file from Ulisse’s Scripts 2.6.1

suffers a remote SQL injection vulnerability in the parameter ‘gid’. The database inputs

are not properly sanitized.

# VULNERABILITY SOLUTION:

Sanitize the unsanitized database inputs in the file ladder.php.

# Proof of Concept: http://www.site.com/ulisse/ladder.php?gid=1?

Exemple by me + dork:

"Powered by Ulisse's Scripts"

Sau

inurl:ladder.php?gid=

RacingClan Networks - Ladder

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.



×
×
  • Create New...