Invision Gallery 2.0.5 – SQL Injection

  • 作者: Ashiyane Digital Security Team
    日期: 2013-01-17
  • 类别:
    平台:
  • 来源:https://www.exploit-db.com/exploits/24180/
  • ##############
    # Exploit Title : Invision Gallery SQL Injection
    #
    # Exploit Author : Ashiyane Digital Security Team
    #
    # software Homepage: www.invisionpower.com/apps/gallery/
    #
    # Home : ww.Ashiyane.org
    #
    # Security Risk : High - SQL Injection
    #
    # version : 2.0.5
    #
    # Dork : Invision Gallery 2.0.5 © 2013IPS, Inc. inurl:img=or Invision Gallery 2.0.5IPS, Inc. inurl:img=
    #
    ##############
    #location: site/index.php?automodule=gallery&cmd=si&img=[SQL]
    #or site/act=module&module=gallery&cmd=si&img=[SQL]
    #
    ##############
    # [Inject with Havij or inject manually]
    ##############
    #Greetz to: My Lord ALLAH
    ##############
    #
    #Amirh03in
    #
    ##############