<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>GO IT WORLD &#124; IT TECH &#124; IT NEWS &#187; zen cart</title>
	<atom:link href="http://www.goitworld.com/tag/zen-cart/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.goitworld.com</link>
	<description>goitworld.com</description>
	<lastBuildDate>Tue, 10 Jan 2012 10:03:06 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.1.2</generator>
		<item>
		<title>Zen Cart 1.3.8 Remote SQL Execution Exploit</title>
		<link>http://www.goitworld.com/zen-cart-1-3-8-remote-sql-execution-exploit-2/</link>
		<comments>http://www.goitworld.com/zen-cart-1-3-8-remote-sql-execution-exploit-2/#comments</comments>
		<pubDate>Wed, 01 Jul 2009 05:59:00 +0000</pubDate>
		<dc:creator>jason</dc:creator>
				<category><![CDATA[Security Tools]]></category>
		<category><![CDATA[exploit]]></category>
		<category><![CDATA[sql execution]]></category>
		<category><![CDATA[zen cart]]></category>

		<guid isPermaLink="false">http://www.goitworld.com/zen-cart-1-3-8-remote-sql-execution-exploit-2/</guid>
		<description><![CDATA[<p style="float: right;margin: 4px;">


</p><p># &#8212;&#8212;- Zen Cart 1.3.8 Remote SQL Execution<br />
# <a href="http://www.zen-cart.com/">http://www.zen-cart.com/</a><br />
# Zen Cart Ecommerce &#8211; putting the dream of server rooting within reach of anyone!<br />
# A new version (1.3.8a) is avaible on <a href="http://www.zen-cart.com/">http://www.zen-cart.com/</a><br />
#</p>

<div class="wp_syntax"><div class="code"><pre class="python" style="font-family:monospace;"><span style="color: #808080; font-style: italic;">#!/usr/bin/python</span>
<span style="color: #808080; font-style: italic;"># Notes: must have admin/sqlpatch.php enabled</span>
<span style="color: #808080; font-style: italic;">#</span>
<span style="color: #808080; font-style: italic;"># clean the database :</span>
<span style="color: #808080; font-style: italic;">#    DELETE FROM `record_company_info` WHERE `record_company_id` = (SELECT `record_company_id` FROM `record_company` WHERE `record_company_image` = '8d317.php' LIMIT 1);</span>
<span style="color: #808080; font-style: italic;">#    DELETE FROM `record_company` WHERE `record_company_image`</span></pre></div></div><p>&#8230; <a href="http://www.goitworld.com/zen-cart-1-3-8-remote-sql-execution-exploit-2/" class="read_more">Read the rest</a></p>]]></description>
		<wfw:commentRss>http://www.goitworld.com/zen-cart-1-3-8-remote-sql-execution-exploit-2/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Zen Cart 1.3.8 Remote SQL Execution Exploit</title>
		<link>http://www.goitworld.com/zen-cart-1-3-8-remote-sql-execution-exploit/</link>
		<comments>http://www.goitworld.com/zen-cart-1-3-8-remote-sql-execution-exploit/#comments</comments>
		<pubDate>Wed, 24 Jun 2009 07:29:29 +0000</pubDate>
		<dc:creator>jason</dc:creator>
				<category><![CDATA[Security Tools]]></category>
		<category><![CDATA[exploit]]></category>
		<category><![CDATA[sql execution]]></category>
		<category><![CDATA[zen cart]]></category>

		<guid isPermaLink="false">http://www.goitworld.com/zen-cart-1-3-8-remote-sql-execution-exploit/</guid>
		<description><![CDATA[<p>#   <br /># &#8212;&#8212;- Zen Cart 1.3.8 Remote SQL Execution    <br /># <a href="http://www.zen-cart.com/">http://www.zen-cart.com/</a>    <br /># Zen Cart Ecommerce &#8211; putting the dream of server rooting within reach of anyone!    <br /># A new version (1.3.8a) is avaible on <a href="http://www.zen-cart.com/">http://www.zen-cart.com/</a>    <br />#    <br /># BlackH :)    <br /># </p>
<p>#   <br /># Notes: must have admin/sqlpatch.php enabled    <br />#    <br /># clean the database :    <br />#&#160;&#160;&#160; DELETE FROM `record_company_info` WHERE `record_company_id` = (SELECT `record_company_id` FROM `record_company` WHERE `record_company_image` = &#8217;8d317.php&#8217; LIMIT 1);    <br />#&#160;&#160;&#160; DELETE FROM `record_company` WHERE `record_company_image` = &#8217;8d317.php&#8217;;</p>
<p>#!/usr/bin/python </p>
<p>import urllib, urllib2, re, sys&#8230; <a href="http://www.goitworld.com/zen-cart-1-3-8-remote-sql-execution-exploit/" class="read_more">Read the rest</a></p>]]></description>
		<wfw:commentRss>http://www.goitworld.com/zen-cart-1-3-8-remote-sql-execution-exploit/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

