[Exploit]  [Remote]  [Local]  [Web Apps]  [Dos/Poc]  [Shellcode]  [RSS]

# Title : Ero Auktion v2010 (item.php) SQL Injection Vulnerability
# Published : 2010-12-18
# Author : DeadLy DeMon
# Previous Title : MaticMarket 2.02 for PHP Nuke LFI Vulnerability
# Next Title : JobAppr <= 1.4 Multiple Vulnerabilities


+Name : Eroauktion 2010 <= SQL injection Vulnerability Proof of Concept
+Autor : DeadLy DeMon
+Date : 18.12.2010
+Script : Eroauktion 2010
+Download : ----
+Dork : Not Dork
+Price : 39.90  EURO
+Language : PHP
+Tests : Windows XP SP 3 and Backtrack4 any other OS
+Discovered by DeadLy DeMon
+ Cyber - Warrir TIM =>> www.cyber-warrior.org
+Greetz to All Cyber-Warrior Members
---------------------------------------------------------------------------------------



Kah ??kar?m g?ky¨¹z¨¹ne seyrederim alemi kah inerim yery¨¹z¨¹ne seyreder alem
beni beni :)))
----------------------------------------------------------------------------------------

Bug ;

server/flashauktion2010/item.php?id=' [Sql Inj. ]
---------------------------------------------------------------------------------------