Jump to content
  • Entries

    16114
  • Comments

    7952
  • Views

    86375557

Contributors to this blog

  • HireHackking 16114

About this blog

Hacking techniques include penetration testing, network security, reverse cracking, malware analysis, vulnerability exploitation, encryption cracking, social engineering, etc., used to identify and fix security flaws in systems.

##################################################################
# Exploit Title:News Website Script - SQL Injection (Error Based)
# Google Dork: NA
# Date: 12.02.2018
# Exploit Author: Varun Bagaria
# Vendor Homepage: https://www.phpscriptsmall.com/
# Software Link: *http://under24usd.com/demo/newstoday/index.php
# Version: 2.0.4
# Tested on: Windows 7
# Category: Webapps
# CVE : NA
##################################################################

Proof of Concept
=================

Attack Parameter : search
Payload : '

Reproduction Steps:
------------------------------
1. Access the script
2. In the search bar insert ' and you will get error based SQL Injection