about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , FuseTalk AuthError.CFM SQL Injection Vulnerability


Title FuseTalk AuthError.CFM SQL Injection Vulnerability
Published 2007-06-19-12:00AM
Updated 2007-06-19-12:00AM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  Ivan Almuina is credited with the discovery of this vulnerability.
Vulnerable  FuseTalk Inc. FuseTalk 3.0
FuseTalk Inc. FuseTalk 2.0
Not Vulnerable  
Code   Attackers can use a browser to exploit this issue.

The following proof-of-concept URI is available:

http://www.example.com/forum/include/error/autherror.cfm?FTVAR_URLP=x&errorcode=[SQL_INJ]
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Sat, 19 Dec 2009 01:23:00 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
www.orkut. news for c jom commen camen elec Photokorn indiancall Sax video sxxxy imagenes a callgirls porn site www.fuck.c 200 /compo Cewek tela tamil sex ass guru all video www.xlx.co dmoz.im call girls sexydesi.n sexe photo Crack Data WWW.GIRL.C www.bollyw news for c Vidio Sex waptrickse trisha.sex Www.snurff Invision 2 port 1026 www.taobao mambo Remo timekiller lo773l www.witon. sexbhabhi dxs.lelecy explorer c ddos irc dmoz.im Arabec maxcpm.inf linux 2.6. www.606688 mambo Remo couck Free sex w 0769xipen.