Advertisement
Kyfx

OTRS Open Ticket WebServer SQL Injection

Dec 12th, 2015
748
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.65 KB | None | 0 0
  1. --- SQL Injection Method Get --- OTRS Version.... >
  2.  
  3. Location of Vul: public.pl?Action=PublicFAQZoom;ItemID=
  4. basic dork: inurl:public.pl?Action=PublicFAQZoom;ItemID= OTRS
  5. Company:http://otrs.org/
  6.  
  7.  
  8. Fail:Kernel/Modules/PublicFAQZoomItemID1005.pm
  9.  
  10.  
  11. examples....
  12.  
  13. http://support.shambhala.org/otrs/public.pl?Action=PublicFAQZoom;ItemID=1
  14. http://sagt.cnti.gob.ve/otrs/public.pl?Action=PublicFAQZoom;ItemID=1005
  15. https://webs.comarb.gob.ar/suma/public.pl?Action=PublicFAQZoom%3BItemID=49
  16. http://otrs.copao.es/otrs/public.pl?Action=PublicFAQZoom;ItemID=24
  17. http://sun.softconf.com/otrs/public.pl?Action=PublicFAQ&Subaction=Print&CategoryID=4&ItemID=263``
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement