header-logo
Suggest Exploit
vendor:
TermiSBloG
by:
Cyber_945
7,5
CVSS
HIGH
SQL Injection
89
CWE
Product Name: TermiSBloG
Affected Version From: V 1.0
Affected Version To: V 1.0
Patch Exists: NO
Related CWE: N/A
CPE: a:devworx:termisblog
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2008

TermiSBloG V 1.0 SQL Injection

TermiSBloG V 1.0 is vulnerable to SQL injection. An attacker can exploit this vulnerability to gain access to admin credentials.

Mitigation:

Input validation should be used to prevent SQL injection attacks.
Source

Exploit-DB raw data:

<------------------- header data start ------------------- >
#############################################################
#    TermiSBloG V 1.0 SQL Injection(s) Vulnerability        #
#############################################################
# Author          : Cyber_945
# Home            : Ar-ge.Org
# Greetz          : D3xer and All Ar-ge.Org Members
# Not3            : Ar-ge.Org Online
# Name            : TermiSBloG V 1.0 SQL Injection
# Bug Type        : SQL
# Infection       : Adminin bilgileri alinabilir.
# Dork            : "© 2008 DevWorx - devworx.somee.com" 
 
#############################################################
=======================C=y=b=e=r=_=9=4=5================
<-- bug code start -- >

http://server/kategori.php?id=1[SQL-Code]
http://server/oku.php?id=1[SQL-Code]


=======================C=y=b=e=r=_=9=4=5================