首页 | 安全文章 | 安全工具 | Exploits | 本站原创 | 关于我们 | 网站地图 | 安全论坛
  当前位置:主页>安全文章>文章资料>Exploits>文章内容
Netartmedia iBoutique.MALL SQLi Vulnerability
来源:shell_c99[at]yahoo.com 作者:Sid3^effects 发布时间:2010-06-29  

Name : Netartmedia iBoutique.MALL SQLi Vulnerability
Date : june, 28 2010
Critical Level     : HIGH
Vendor Url : http://www.netartmedia.net/mall/
Author : Sid3^effects aKa HaRi <shell_c99[at]yahoo.com>
special thanks to : r0073r (inj3ct0r.com),L0rd CruSad3r,MaYur,MA1201,KeDar,Sonic,gunslinger_,Sn!pEr.S!Te,n4pst3rr
greetz to :www.topsecure.net ,All ICW members and my friends :) luv y0 guyz
#######################################################################################################
Description:
iBoutique.MALL is a powerful and flexible multi merchants php mall solution. It makes possible for the merchants to signup and create their

online stores with ease. They could start selling their good within minutes without having any html knowledge. iBoutique.MALL offers a lot of

useful functionalities for both merchants (to manage their product inventory and payments, invoice generation, statistics, ...) and

administrators, to control the whole system
###############################################################################################################

Xploit: SQLi VUlnerability

 
DEMO URL : http://server/path/index.php?mod=products&cat=[sqli]

###############################################################################################################
# 0day no more
# Sid3^effects


 
[推荐] [评论(0条)] [返回顶部] [打印本页] [关闭窗口]  
匿名评论
评论内容:(不能超过250字,需审核后才会公布,请自觉遵守互联网相关政策法规。
 §最新评论:
  热点文章
·CVE-2012-0217 Intel sysret exp
·Linux Kernel 2.6.32 Local Root
·Array Networks vxAG / xAPV Pri
·Novell NetIQ Privileged User M
·Array Networks vAPV / vxAG Cod
·Excel SLYK Format Parsing Buff
·PhpInclude.Worm - PHP Scripts
·Apache 2.2.0 - 2.2.11 Remote e
·VideoScript 3.0 <= 4.0.1.50 Of
·Yahoo! Messenger Webcam 8.1 Ac
·Family Connections <= 1.8.2 Re
·Joomla Component EasyBook 1.1
  相关文章
·UFO: Alien Invasion v2.2.1 Rem
·Linux/ARM - execve("/bin/sh","
·Free MP3 CD Ripper 1.0 (0day)
·GSM SIM Utility sms file Local
·WarFTPD 1.65 (USER) Remote Buf
·MemDb Multiple Remote Dos
·Mozilla Firefox 3.6.4 Denial o
·Winamp v5.571 Malicious AVI De
·Linux perl-5.003-8/-9 Local Bu
·Mozilla Firefox 3.6.6 Denial o
·Flock Browser 2.6.0 Denial of
·Linux/ARM - setuid(0) & execve
  推荐广告
CopyRight © 2002-2022 VFocuS.Net All Rights Reserved