Matrimonial Website Script 2.1.6 – ‘uid’ SQL Injection

  • 作者: L0RD
    日期: 2018-02-05
  • 类别:
    平台:
  • 来源:https://www.exploit-db.com/exploits/43965/
  • # Exploit Title: Matrimonial Website Script 2.1.6 - 'uid' SQL Injection
    # Dork: N/A
    # Date: 2018-02-03
    # Exploit Author: Borna nematzadeh (L0RD) or borna.nematzadeh123@gmail.com
    # Vendor Homepage:
    
    Matrimonial Website Script
    # Version: 2.1.6 # Category: Webapps # CVE: N/A # # # # # # Description: # The vulnerability allows an attacker to inject sql commands. # # # # # # Proof of Concept: http://localhost/entrepreneur/view-profile.php?uid=[SQL]