Introduction
Whilst checking the www.brooklinma.gov website, I managed to find multiple vulnerabilities, one of them was LFI which made me able to fetch multiple files. Most werent useful in my opinion.
Besides this one which contains:
> First, middle and last names of workers
> Addresses
>...
DBHunter
Thread
0
02446
1
albuquerque
brookline
com
download
edu
example
expires
gmail
one
rui
sarah
street
term
the
this
which
yes
leak from russian online store bestmebelshop.ru.
100k users from 704k and 860k orders.
Date of breach: 18.08.2024
Columns:
INSERT INTO `b_user` (`ID`, `TIMESTAMP_X`, `LOGIN`, `PASSWORD`, `CHECKWORD`, `ACTIVE`, `NAME`, `LAST_NAME`, `EMAIL`, `LAST_LOGIN`, `DATE_REGISTER`, `LID`...
DBHunter
Thread
checkword
city
date
fax
last
login
mailbox
name
notes
pager
personal
phone
state
street
time
user
work
www
zip
zone