about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , FishCart Olst Parameter SQL Injection Vulnerability


Title FishCart Olst Parameter SQL Injection Vulnerability
Published 2007-01-22-12:00AM
Updated 2007-01-25-04:24PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  laurent gaffie is credited with the discovery of this vulnerability.
Vulnerable  FishNet FishCart 3.1
FishNet FishCart 3.0.7 b
FishNet FishCart 2.21
FishNet FishCart 1.90
Not Vulnerable  FishNet FishCart current CVS
Code   Attackers can exploit this issue via a web client.

The following proof-of-concept URI is available:

http://www.example.com/uds/display.php?cartid=200701210157208&zid=1&lid=1&olimit=5&cat=&key1=&nlst=y&olst='[sql]
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Fri, 18 Dec 2009 16:39:04 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
Sex welpep 3mhr.cn sitebuilde www.aus888 mac os x 1 200 /compo lo628l very sexy pirats Memek gede maxcpm.inf 200 /compo www.gooogl free sexi ultimate i phpmyadmin tamil x http://www moehayko easygals.c www.sex ma WWW SXE imges sex moehayko tom+fooley ntfs Novell Cli tom+fooley failure np nudo www.ks-lb. tamil nude Video seks Www.Boy fu www.alsaha sexteen ph iranian gi Anita www.xianch uuseo.com. php-nuke 2 arab sex 3 picturespr mambo Remo HAIRY Www.junoob jizha.xira C...Fcopyr 200 /compo wwe divas