header-logo
Suggest Exploit
vendor:
Advanced Image Hosting
by:
keracker
7.5
CVSS
HIGH
SQL Injection
89
CWE
Product Name: Advanced Image Hosting
Affected Version From: 2.2
Affected Version To: 2.2
Patch Exists: NO
Related CWE: N/A
CPE: a:yabsoft:advanced_image_hosting
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: Windows/php
2011

Advanced Image Hosting v2.2 SQLi Vulnerability

Advanced Image Hosting v2.2 is vulnerable to SQL injection. The vulnerable variables are the POST variables: gallery_id, showlinks, gal, id, type, email, emaillinks, allbox, and pages, as well as the GET variable. An attacker can exploit this vulnerability by sending malicious SQL queries to the application.

Mitigation:

Input validation should be used to prevent SQL injection attacks. All user-supplied input should be validated and filtered before being used in SQL queries.
Source

Exploit-DB raw data:

==========================================
Advanced Image Hosting v2.2 SQLi Vulnerability
==========================================

[~]######################################### InformatioN
#############################################[~]

[~] Title     : Advanced Image Hosting v2.2 SQLi Vulnerability
[~] Author    : keracker
[~] Vendor or Software Link  : http://yabsoft.com
[~] Email     : keracker@gmail.com
[~] Data  : 2011-04-01
[~] Google dork: "Powered by: AIH v2.2"
[~] Category:  [Webapps]
[~] Tested on: [Windows /php]

[~]#########################################   ExploiT
#############################################[~]

[~] Vulnerable File :

http://localhost:80/advanced-image-hosting-v2.2/index.php

[~] Vulnerable Variables :
The POST variable: gallery_id
The POST variable: showlinks
The POST variable: gal
The POST variable: id
The POST variable: type
The POST variable: email
The POST variable: emaillinks
The POST variable: allbox
The POST variable: pages
The GET  variable:
http://localhost/Advanced-Image-Hosting-V2.2/index.php?showlinks=1&viewmode=0&gallery_id=[SQLi]
[~]######################################### ThankS To ...
############################################[~]

[~] IRANIAN Young HackerZ # Persian Gulf

[~]#########################################   FinisH :D
#############################################[~]################[~]