OpenCart <= 1.5.6.1 SQL Injection

Posted by Saadi On Wednesday, 26 March 2014 11 comments
Hi , so today we have SQL injection in OpenCart .I discovered this bug several months ago when i pentested OpenCart and found CSRF in it too.You can check CSRF here.The ebay.php file in OpenCart is badly coded and you can see a lot SQLi in it.So here it is.. http://www.exploit-db.com/exploits/32520 http://packetstormsecurity.com/files/125867/OpenCart-1.5.6.1-SQL-Injection.html http://cxsecurity.com/issue/WLB-2014030212 http://1337day.com/exploit/description/22071 #...
READ MORE

ClipSharePro <= 4.1 Local File Inclusion

Posted by Saadi On Saturday, 8 March 2014 1 comments
http://www.exploit-db.com/exploits/32131 http://cxsecurity.com/issue/WLB-2014030063 # Exploit Title  : ClipSharePro <= 4.1 Local File Inclusion # Date           : 2013/3/9 # Exploit Author : Saadat Ullah , saadi_linux[at]rocketmail[dot]com # Software Link  : http://www.clip-share.com # Author HomePage: http://security-geeks.blogspot.com #...
READ MORE
Page 1 of 6123456Next