about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Web Animations Password Protect Multiple Input Validation Vulnerabilities


Title Web Animations Password Protect Multiple Input Validation Vulnerabilities
Published 2004-08-31-12:00AM
Updated 2004-08-31-02:13PM
Class Input Validation Error
CVE   CVE-MAP-NOMATCH
Remote  Yes
Local  No
Credit  Discovery is credited to Criolabs.
Vulnerable  Web Animations Password Protect
Not Vulnerable  
Code   No exploit is required.

The following proof of concept examples are available:

SQL injection:
/adminSection/index_next.asp?admin = (SQLInjection) Pass = (SQLInjection)

/adminSection/ChangePassword.asp?LoginId=(SQLInjection) OPass=(SQLInjection) NPass=(SQLInjection) CPass=(SQLInjection)

Cross-site scripting:
/adminSection/index.asp?ShowMsg=(XSS)
/adminSection/ChangePassword.asp?ShowMsg=(XSS)
/adminSection/users_list.asp?ShowMsg=(XSS)
/adminSection/users_add.asp?ShowMsg=(XSS)
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Fri, 18 Dec 2009 07:52:39 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
phpMyAdmin dropbear sexygi news for C shop576353 Www.hollwo sex (pamil pinkworld. Image+sext www.trish Www.89 sxy www.in8.cn videosxe.c Sabdrimer+ microalert news.21315 pinkworld. bbs.1010px 0847427118 www.lesbia www.kar20. 200+%252Fc www;98;com \\\'A sexpichar shat sex a 200 /compo W.w.w.xxnx Sex vedio www.pphome www.guasi. Www.girl.c arab anal www.1010px Linux Kern hot video chu.html/a Modernbill www.de57.c apache 1. WWw.ash bo www.desiad shat sex a guestbook. www.kar20. sistersex remote+inc Remote Inc www.511278 www.ehomes