Jie ETS Manage SQL Injection Vulnerability
# r00t-s3cur1ty cr3w (rS) #
# HaNniBaL KsA - Dr.Silver - MR.DH #
#############################################
# HK@rS:~# ./rS #
#############################################
[#] Title : Jie ETS Manage SQL Injection Vulnerability
[#] Vendor : http://www.dhzgw.com
[#] Author : HaNniBaL KsA (HK)
[#] Team : r00t-s3cur1ty cr3w (rS)
[#] E-mail : B9n@hotmail.com & r007.hk@gmail.com
[#] Home : p0c.cc (Proof Of Concepts | P0C Team)
[#] Twitter : twitter.com/r00t_s3cur1ty
[#] Date : 05-22-2011
[#] GooGle Dork : "CopyRight 2009-2019 dhzgw.com"
-------------------------------------------------------------------------
[+] Exploit :
[~] http://site/path/download.php?id=[SQL]
-------------------------------------------------------------------------
[+]Demo :
[~] http://yingxiong.xuebu.net/download.php?id=6
[~] http://www.woyxb.com/download.php?id=6
[~] http://jieyitong.tk/download.php?id=6
-------------------------------------------------------------------------
[NOTE!] :
"myadmin" is the admin directory
e.x : http://www.site.com/path/myadmin
No comments:
Post a Comment