EliteHackers
SALUT 2022!! NE-AM MUTAT PE DISCORD ! Vrei să inviți un prieten? [T]eoria [H]aosului [C]ontrolat - https://discord.com/invite/U4HBCHzm7r Acesta aste link-ul oficial al acestui server.
Lista Forumurilor Pe Tematici
EliteHackers | Reguli | Inregistrare | Login

POZE ELITEHACKERS

Nu sunteti logat.
Nou pe simpatie:
MicheleC pe Simpatie.ro
Femeie
25 ani

cauta Barbat
26 - 68 ani
EliteHackers / Exploituri / PGAUTOPro SQLi and XSS Vulnerability Moderat de Ad_Infinitum, AntiKiler, Puscas_marin, r3v
Autor
Mesaj Pagini: 1
r3v
Moderator

Inregistrat: acum 16 ani
Postari: 1158


Code:

# EDB-ID: 13786
# CVE: ()
# OSVDB-ID: ()
# Author: Sid3^effects
# Published: 2010-06-09
# Verified: Yes
# Download: Exploit Code
# Download: N/A view source

print
?        ======================================= 
          PGAUTOPro SQLi and XSS Vulnerability 
        ======================================= 
1-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=0 
0     _                   __           __       __                     1 
1   /' \            __  /'__`\        /\ \__  /'__`\                   0 
0  /\_, \    ___   /\_\/\_\ \ \    ___\ \ ,_\/\ \/\ \  _ ___           1 
1  \/_/\ \ /' _ `\ \/\ \/_/_\_<_  /'___\ \ \/\ \ \ \ \/\`'__\          0 
0     \ \ \/\ \/\ \ \ \ \/\ \ \ \/\ \__/\ \ \_\ \ \_\ \ \ \/           1 
1      \ \_\ \_\ \_\_\ \ \ \____/\ \____\\ \__\\ \____/\ \_\           0 
0       \/_/\/_/\/_/\ \_\ \/___/  \/____/ \/__/ \/___/  \/_/           1 
1                  \ \____/ >> Exploit database separated by exploit   0 
0                   \/___/          type (local, remote, DoS, etc.)    1 
1                                                                      1 
0  [+] Site            : Inj3ct0r.com                                  0 
1  [+] Support e-mail  : submit[at]inj3ct0r.com                        1 
0                                                                      0 
1               ##########################################             1 
0               I'm Sid3^effects member from Inj3ct0r Team             1 
1               ##########################################             0 
0-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-==-=-=-1 
  
Name : PGAUTOPro SQLi and XSS Vulnerability 
Date : june, 9 2010 
Vendor url :http://www.pgautopro.com/ 
Platform: Linux,Windows 
Price: AUD$450 
Author : Sid3^effects aKa HaRi <shell_c99[at]yahoo.com> 
special thanks to : r0073r (inj3ct0r.com),L0rd CruSad3r,MaYur,gunslinger_ 
greetz to :All ICW members. 
  
############################################################################################################### 
Description: 
  
Full Featured Car Dealer Inventory Software - PG Auto Pro 
Our Software Solution will meet the requirements of Private Auto Dealers, Auto Dealership Companies and other Enterprises selling Vehicles. 
  
The Software fundamental features will help starting your own Auto Classifieds Website: 
- huge vehicles database with 3000 Models approximately 
- possibility to add any new car that's missing in the database 
- a powerful option of monetizing auto website - charging users for paid packages and additional services, selling banner places to  
  
advertisirs, placing your own AdSense contextual ads will let you derive profit from the site 
- a good chance for Car Dealers to sell their autos faster than before due to the comprehensive search options on the site. 
############################################################################################################### 
  
Xploit: SQLi Vulnerability 
  
DEMO   
  
URL:http://[site]/vehicle/buy_do_search/?order_direction=DESC&&status=1&form_gid=vehicle_user_quick_search_new&back_module=vehicl 
  
e%2Fbuy_do_search&page=[SQLi] 
  
############################################################################################################### 
Xploit: XSS Vulnerability 
  
  Attack Pattern: '"--> 
  
  http://[site]/vehicle/buy_do_search/?order_direction=[XSS] 
  
  
############################################################################################################### 
# 0day no more  
# Sid3^effects



_______________________________________
http://thieves-team.com
r3vyk.info
mess id: doar prin PM datorita faptului ca mi-au dat add 10000 de retardati care joaca metin

pus acum 16 ani
   
Pagini: 1  

Mergi la