about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , PHP-Nuke SQL Injection Protection Bypass and Multiple SQL Injection Vulnerabilities


Title PHP-Nuke SQL Injection Protection Bypass and Multiple SQL Injection Vulnerabilities
Published 2007-04-17-12:00AM
Updated 2007-04-17-06:31PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  Aleksandar is credited with the discovery of these vulnerabilities.
Vulnerable  PHPNuke PHPNuke 8.0 .3.3b
Not Vulnerable  
Code   Attackers can use a browser to exploit these issues.

The following example URI strings demonstrate bypassing the SQL-injection-protection feature:

http://www.example.com/nuke/?%2f*

http://www.example.com/html80/?%2f**/UNION%2f**/SELECT
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Fri, 18 Dec 2009 23:57:40 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
Munna pras Www.vidios animal por Board Powe search/exp www.phatas actress an php 4.0.1 waptrik.co Www.sex400 Exploit 20 sarahasari aMember maxcpm.inf =...rem/ol SEXPICSOR /search/ex South inda inject she Video porn criticize amet powered+by Www:waptri php 4.3.9 Ad Manager la familia Www:waptri anhahau200 0813214863 www.xlxx.c xxx sex ve .../readm sync net os www.hpv39. Free nude NAKEDGRILS 200 /compo www.youtuo freesexvid www.pinkwa pinkwold NAKEDGRILS Free nude Horse foki nero6 www.auto-t www.kisshe mambo Remo