Digital Interchange Document Library – SQL Injection

  • 作者: L0rd CrusAd3r
    日期: 2010-06-13
  • 类别:
    平台:
  • 来源:https://www.exploit-db.com/exploits/13859/
  • 1-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=0
    0 _ __ __ __ 1
    1 /' \ __ /'__`\ /\ \__ /'__`\ 0
    0 /\_, \ ___ /\_\/\_\ \ \ ___\ \ ,_\/\ \/\ \ _ ___ 1
    1 \/_/\ \ /' _ `\ \/\ \/_/_\_<_ /'___\ \ \/\ \ \ \ \/\`'__\ 0
    0 \ \ \/\ \/\ \ \ \ \/\ \ \ \/\ \__/\ \ \_\ \ \_\ \ \ \/ 1
    1 \ \_\ \_\ \_\_\ \ \ \____/\ \____\\ \__\\ \____/\ \_\ 0
    0 \/_/\/_/\/_/\ \_\ \/___/ \/____/ \/__/ \/___/ \/_/ 1
    1 \ \____/ >> Exploit database separated by exploit 0
    0 \/___/ type (local, remote, DoS, etc.) 1
    1 1
    0 [+] Site : Inj3ct0r.com 0
    1 [+] Support e-mail : submit[at]inj3ct0r.com 1
    0 0
    1 ########################################### 1
    0 I'm L0rd CrusAd3r member from Inj3ct0r Team 1
    1 ########################################### 0
    0-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-==-=-=-1
    
    Author: L0rd CrusAd3r aka VSN [crusader_hmg@yahoo.com]
    Exploit Title:Digital Interchange Document Library SQL Vulnerability
    Vendor url:http://www.digitalinterchange.com
    Version:5.8.5
    Cost: $129 USD
    Published: 2010-06-14
    Greetz to:Sid3^effects, MaYur, M4n0j, Dark Blue, S1ayer,d3c0d3r,KD and to
    all ICW members.
    Spl Greetz to:inj3ct0r.com Team
    
    ~*~*~*~*~*~*~~*~*~*~*~*~*~~*~*~*~*~*~*~~*~*~*~*~*~*~~*~*~*~*~*~*~~*~*~*~*~*~*~~*~*~*~*~*~*~~*~*~*~*~*~*~~*~*~*~*~*~*~~*~*~*~*~*~*~~*~*~*~*~*~*~~*~*~*~*~*~*~~*~*~*~*~*~*~~*~*~*~*~*~*~~*~*~*~*~*~*~~*~*~*~*~*~*~
    
    Description:
    
    The Digital Interchange Document library allows you to easily and seamlessly
    store your documents online! The administration area is a secured area with
    an intuitive interface that will let you manage all of your documents from
    any location with an internet connection. By storing your documents in
    folders you setup in the Document Library, you will be able to quickly and
    easily organize and access the information you need most.
    
    ~*~*~*~*~*~*~~*~*~*~*~*~*~~*~*~*~*~*~*~~*~*~*~*~*~*~~*~*~*~*~*~*~~*~*~*~*~*~*~~*~*~*~*~*~*~~*~*~*~*~*~*~~*~*~*~*~*~*~~*~*~*~*~*~*~~*~*~*~*~*~*~~*~*~*~*~*~*~~*~*~*~*~*~*~~*~*~*~*~*~*~~*~*~*~*~*~*~~*~*~*~*~*~*~
    
    Vulnerability:
    
    *SQL Vulnerability
    
    DEMO URL:
    http://server/view_group.asp?intGroupID=[sqli]
    
    # 0day n0 m0re #
    # L0rd CrusAd3r #
    
    -- 
    With R3gards,
    L0rd CrusAd3r