========================================= Web Wiz Forums 9.68 SQLi Vulnerability ========================================= 1-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=0 0 _ __ __ __ 1 1 /' \ __ /'__`\ /\ \__ /'__`\ 0 0 /\_, \ ___ /\_\/\_\ \ \ ___\ \ ,_\/\ \/\ \ _ ___ 1 1 \/_/\ \ /' _ `\ \/\ \/_/_\_<_ /'___\ \ \/\ \ \ \ \/\`'__\ 0 0 \ \ \/\ \/\ \ \ \ \/\ \ \ \/\ \__/\ \ \_\ \ \_\ \ \ \/ 1 1 \ \_\ \_\ \_\_\ \ \ \____/\ \____\\ \__\\ \____/\ \_\ 0 0 \/_/\/_/\/_/\ \_\ \/___/ \/____/ \/__/ \/___/ \/_/ 1 1 \ \____/ >> Exploit database separated by exploit 0 0 \/___/ type (local, remote, DoS, etc.) 1 1 1 0 [+] Site : Inj3ct0r.com 0 1 [+] Support e-mail : submit[at]inj3ct0r.com 1 0 0 1 ########################################## 1 0 I'm Sid3^effects member from Inj3ct0r Team 1 1 ########################################## 0 0-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-==-=-=-1 Name : Web Wiz Forums 9.68 SQLi Vulnerability Date : june, 9 2010 Vendor url :http://www.webwiz.co.uk/webwizforums/ Platform: Windows Price:$199 Author : Sid3^effects aKa HaRi special thanks to : r0073r (inj3ct0r.com),L0rd CruSad3r,MaYur,gunslinger_ greetz to :All ICW members. ############################################################################################################### Description: FREE ready to run discussion forum application featuring: Fast performance tuned SQL engine, 100's of easy to setup generic features, AD FREE, Unlimited Forums, Sub Forums, Topics, Posts, Members, & Groups, WYSIWYG post editor, web based setup/admin, RSS Feeds, skins, private messenger, calendar system, moderated posts, per forum security settings, unlimited member groups, integrate with existing member base, ladder system, password protect forums, moderators, image/file/avatar upload, search facilities, animated emoticons, avatar gallery, members list, hot topics, powerful admin tools, language files, IP banning, high security, CAPTCHA, Windows Authentication, support for load balanced web servers and web farms, API's, and lots more. FREE SUPPORT!! SQL Server 2000 & 2005 / mySQL 4.1+ & 5+ / MS Access versions. ############################################################################################################### Xploit: SQLi Vulnerability DEMO URL: http://demo.webwizforums.com/new_reply_form.asp?TID=[SQLi] ############################################################################################################### # 0day no more # Sid3^effects