about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , PostNuke Phoenix SID Parameter Remote SQL Injection Vulnerability


Title PostNuke Phoenix SID Parameter Remote SQL Injection Vulnerability
Published 2005-04-08-12:00AM
Updated 2005-04-13-01:24PM
Class Input Validation Error
CVE   CVE-MAP-NOMATCH
Remote  Yes
Local  No
Credit  dcrab <dcrab@hackerscenter.com> is credited with the discovery of this issue.
Vulnerable  PostNuke Development Team PostNuke Phoenix 0.760 RC3
Not Vulnerable  
Code   The following proof of concept is available:

http://localhost/modules.php?op=modload&name=News&file=article&sid='SQL_INJECTION&POSTNUKESID=355776cfb622466924a7096d4471a480
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Thu, 17 Dec 2009 01:33:37 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
Www.Videos www.27tu.c news for c www.66188. 200+%252Fc www.5151c. WWW.RASHI akssexy console IMAP4rev1d admin_fil 200+%252Fc si yo fuer 200+%252Fc gaynakedhu www.ffliao Imige si yo fuer Nokia 6233 Indian cin www xxl si WRT54G REEMA aijuhe.web Wwwsex.89. www.thresh linux vi news for c Dabble.com simpel mic SSC RESULT php-nuke 2 Tetek Temp Remote fil mobius/px zsfunway.c Yu-Gi-Oh! 10.613.zha www.zsfunw news for C 200+%252Fc m...g/id1. www.vide Gallery v sex.pornoa Sex%2Bvidi invision p www.x69.co BABY SEX.C ++Apache+h