Advertisement






surena CMS Travel SQL injection

CVE Category Price Severity
CVE-2021-26089 CWE-89 $1,000 High
Author Risk Exploitation Type Date
Ali Razmjoo High Remote 2020-07-23
CVSS EPSS EPSSP
CVSS:4.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N 0.02192 0.50148

CVSS vector description

Our sensors found this exploit at: https://cxsecurity.com/ascii/WLB-2020070121

Below is a copy:

surena CMS Travel SQL injection
#Exploit Title : surena CMS Travel SQL injection
#Date : 22-7-2020
#Google Dork : inurl:php?id= intext:          
#Exploit Author : Avanter & ITH Team
#Vendor Homepage : http://surena3d.com
#Tested on : Windows 8
#CVEs : N/A

.:: Descreption ::.

A programming error caused a malicious file to be infected with a SQLI error

.:: PoC ::.

1 : Find Your target with Dork
2 : Find And test the Target With '
3 : Injection With SQLmap Or other softwares :)

.:: Discovered by ::.
Avanter

Copyright ©2024 Exploitalert.

This information is provided for TESTING and LEGAL RESEARCH purposes only.
All trademarks used are properties of their respective owners. By visiting this website you agree to Terms of Use and Privacy Policy and Impressum