------------------------------------------------------------------------------------------- Tainos Webdesign (All Scripts) SQL/XSS/HTML Injection Vulnerability ------------------------------------------------------------------------------------------- Author: CoBRa_21 Mail: uyku_cu@windowslive.com Script Home: http://www.tainos-webdesign.com Dork: intext:"© Tainos Webdesign" ------------------------------------------------------------------------------------------- Sql Injection: http://localhost/[path]/propertylux.php?ID=1 (SQL) http://localhost/[path]/property.php?ID=199 (SQL) ------------------------------------------------------------------------------------------- XSS Injection: http://localhost/[path]/class.php?Class=Rental&Subclass= http://localhost/[path]/class.php?Class=Sales&Subclass= http://localhost/[path]/classlux.php?Class=Luxury&Subclass= ------------------------------------------------------------------------------------------- HTML Injection: http://localhost/[path]/class.php?Class=Rental&Subclass=CoBRa_21 http://localhost/[path]/class.php?Class=Sales&Subclass=CoBRa_21 http://localhost/[path]/classlux.php?Class=Luxury&Subclass=CoBRa_21 ------------------------------------------------------------------------------------------- _________________________________________________________________ Yeni Windows 7: Gündelik işlerinizi basitleştirin. Size en uygun bilgisayarı bulun. http://windows.microsoft.com/shop