header-logo
Suggest Exploit
vendor:
Not specified
by:
Gamoscu
7.5
CVSS
HIGH
SQL Injection
89
CWE
Product Name: Not specified
Affected Version From: Not specified
Affected Version To: Not specified
Patch Exists: NO
Related CWE: Not specified
CPE: Not specified
Metasploit:
Other Scripts:
Platforms Tested: Not specified
Not specified

weenCompany SQL Injection Vulnerability

The vulnerability allows an attacker to execute arbitrary SQL queries in the weenCompany website's index.php moduleid parameter, leading to unauthorized access or manipulation of the database.

Mitigation:

To mitigate the vulnerability, the vendor should implement proper input validation and parameterized queries to prevent SQL injection attacks.
Source

Exploit-DB raw data:

#############################################################
# weenCompany SQL Injection Vulnerability

# Vendor: http://www.weentech.com/

# Author: Gamoscu

# Site: www.1923turk.biz

#  Site: http://gamoscu.wordpress.com/
  
##############################################################

# Dork:"Created by weenCompany"

 
# Exploit: http://server/index.php?moduleid=m2_news[SQL-inj]&articleid=1
    
 
##############################################################
# Greetz: Manas58 Baybora Delibey Tiamo Psiko
##############################################################


Vatan Lafla Deðil Eylemle Sevilir

Kiskananlar catlasin Zorunuza Gitmesin