about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Lighthouse Development Squirrelcart SQL Injection Vulnerability


Title Lighthouse Development Squirrelcart SQL Injection Vulnerability
Published 2005-03-29-12:00AM
Updated 2005-04-06-03:35PM
Class Input Validation Error
CVE   CAN-2005-0962
Remote  Yes
Local  No
Credit  Discovery is credited to Diabolic Crab <dcrab@hackerscenter.com>.
Vulnerable  Lighthouse Development Squirrelcart 1.5.5
Not Vulnerable  Lighthouse Development Squirrelcart 1.6
Code   No exploit is required.

The following proof of concept is available:

http://www.example.com/index.php?crn='SQL_INJECTION&action=show&show_products_mode=cat_click&PHPSESSID=2069dbe1646bdc46e4e78718e76e6d15
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Fri, 18 Dec 2009 12:05:08 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
Elite Uplo dap 8.5 cr www.quangu Blackbooty Hello, nic %2Findex.p tw.myblog. t83t Www.23sex. www.canon. Apache htt arabicsexy arab shema Apache htt vBulletin www.americ pinnacle News Searc winpapi koina mitr PHP Advanc www.worlds CMS is F.. to show se open http IBP lo971l myyd& www.qqdmku www.kjxy.n wwwsexmovi Tagger LE. maxcpm.inf _PHPBB php+root 33563830 php-nuke 2 Tagger LE. Tagger LE. FOTOS PETA Tagger LE. 1... ayarl naruto sex www.yzmoth Www.23sex. chenhao365 xayf.com.c IRAQSEX /component power vcr